generated: '2026-09-10' method: probed probe: true provider: Fraud.net providerId: fraud-net published: false policy: [] contact: [] bug_bounty: null note: >- NO published vulnerability disclosure programme was found. This is a recorded absence with evidence, not an unchecked field: no security.txt on any host, every conventional disclosure path 404s on the marketing site, and the Trust Center — which does describe internal penetration testing and continuous vulnerability scanning — publishes no security contact address and no reporting channel for an outside researcher. No HackerOne, Bugcrowd or Intigriti programme was found. NO `Security` pointer is emitted in apis.yml; a pointer here would assert a disclosure channel the provider does not publish. evidence: - {url: 'https://fraud.net/.well-known/security.txt', http_status: 404} - {url: 'https://www.fraud.net/.well-known/security.txt', http_status: 404} - {url: 'https://api.fraud.net/.well-known/security.txt', http_status: 403} - {url: 'https://api-docs.fraud.net/.well-known/security.txt', http_status: 404} - {url: 'https://www.fraud.net/security', http_status: 404} - {url: 'https://www.fraud.net/responsible-disclosure', http_status: 404} - {url: 'https://www.fraud.net/security/responsible-disclosure', http_status: 404} - {url: 'https://www.fraud.net/vulnerability-disclosure', http_status: 404} - {url: 'https://www.fraud.net/trust-center', http_status: 200, finding: 'no security contact, no disclosure policy'} checked: '2026-09-10'