generated: '2026-07-24' method: searched probe: true source: https://practices.hotdoc.com.au/security/ policy: - https://practices.hotdoc.com.au/security/ contact: [] note: >- HotDoc operates a coordinated (responsible) disclosure process with separate paths: customers submit tickets to support, and security researchers email the security team (address obfuscated in the page HTML). No public bug-bounty program (HackerOne/Bugcrowd/Intigriti) and no RFC 9116 security.txt were found; /.well-known/security.txt returns 404. evidence: - source: https://practices.hotdoc.com.au/security/ kind: disclosure page keywords: - coordinated disclosure - security researchers - vulnerability