generated: '2026-08-23' method: probed source: >- Live probes on 2026-08-23 plus a full read of the ISN trust center, contact page and 916-URL sitemap. program_found: false security_txt: present: false probes: - url: https://www.isnetworld.com/.well-known/security.txt status: 404 - url: https://api.isnetworld.com/.well-known/security.txt status: 404 - url: https://www.isn.com/.well-known/security.txt status: 404 bug_bounty: present: false platforms_checked: [HackerOne, Bugcrowd, Intigriti] disclosure_page: url: null security_contact: email: null note: >- ISN publishes no security or vulnerability-disclosure contact. The trust center routes all enquiries — including security ones — through the general customer service contact form at https://www.isnetworld.com/en/contact. A reporter has no documented path to reach a security team. note: >- ISN publishes ISO/IEC 27001:2022 and SOC 2 attestations and gates a third-party penetration-testing letter behind a request form, so a security program plainly exists internally; what is absent is any public intake channel for a report from outside. NO Security pointer is emitted in apis.yml, because that check asserts a published disclosure route and there is none.