generated: '2026-07-18' method: searched probe: true policy: [] contact: - mailto:security@dyspatch.io evidence: - source: https://www.dyspatch.io/security.txt kind: security.txt note: >- security.txt served at the site root (not the RFC 9116 canonical /.well-known/ path). Advertises Contact: security@dyspatch.io. The published Expires value (2024-11-16T19:16:00Z) has lapsed, so the file is stale, but it remains the provider's published security contact. - source: well-known/dyspatch-security.txt kind: security.txt notes: >- No public bug-bounty program (HackerOne/Bugcrowd/Intigriti) or dedicated responsible-disclosure page was found on the marketing or docs sites at probe time. The only published vulnerability-reporting channel is the security.txt email contact.