generated: '2026-07-24' method: searched probe: true source: https://www.healthdirect.gov.au/.well-known/security.txt policy: [] contact: - mailto:security@healthdirect.org.au - tel:1800022222 preferred_languages: en expires: '2027-06-30T23:59:59Z' canonical: https://www.healthdirect.gov.au/.well-known/security.txt evidence: - source: https://www.healthdirect.gov.au/.well-known/security.txt kind: security.txt (RFC 9116, live probe HTTP 200) note: 'Named security contact security@healthdirect.org.au' - source: https://about.healthdirect.gov.au/.well-known/security.txt kind: security.txt (RFC 9116, live probe HTTP 200) note: Corporate-site security.txt; canonical points to the www host file note: >- Healthdirect publishes an RFC 9116 security.txt on both its consumer (www.healthdirect.gov.au) and corporate (about.healthdirect.gov.au) hosts with a dedicated security@healthdirect.org.au reporting mailbox and the 1800 022 222 health line. No formal bug-bounty program (HackerOne/Bugcrowd/Intigriti) or standalone responsible-disclosure page was found.