generated: '2026-07-19' method: searched probe: false source: https://www.eql.com/legal/responsible-disclosure-policy url: https://www.eql.com/legal/responsible-disclosure-policy contact: - mailto:vulnerabilitydisclosure@eql.com bug_bounty: false paid: false scope: covered: - EQL Launch Pages - https://app.eql.com - https://portal.eql.com excluded: - marketing website - clickjacking - social engineering / phishing - weak SSL / TLS config - DoS / DDoS - malware - physical attacks - data modification / exfiltration attempts - email security misconfiguration - missing CAA record - cookie flags - X-Frame-Options - CSP headers - server information disclosure response_sla: Initial response within five business days for verified material vulnerabilities. safe_harbor: true evidence: - source: https://www.eql.com/legal/responsible-disclosure-policy kind: responsible-disclosure page