generated: '2026-07-19' method: searched probe: true source: https://homzmart.com/en/vulnerability-disclosure evidence: - source: https://homzmart.com/en/vulnerability-disclosure kind: disclosure page keywords: - vulnerability notes: >- Homzmart publishes a dedicated vulnerability-disclosure route (/en/vulnerability-disclosure), confirmed via the site's server-rendered footer self-link and canonical URL. The page body is client-rendered (Next.js SPA), so the full policy text, security contact, scope, and any safe-harbor or bug-bounty details could not be extracted programmatically. No /.well-known/security.txt is published (404). No bug bounty program (HackerOne/Bugcrowd/Intigriti) or named certifications were found.