generated: '2026-08-25' method: searched probe: true source: https://www.liqid.de/.well-known/security.txt program: name: LIQID Vulnerability Disclosure Policy (VDP) type: vulnerability-disclosure-policy bug_bounty: false url: https://vdp.liqid.de platform: zerodisclo.com platform_note: >- vdp.liqid.de is a CNAME to zerodisclo.com, a third-party coordinated-disclosure intake platform; the page is a client-rendered single-page app whose served HTML carries only VDP and , so the policy text itself is not machine-readable. contact: - https://vdp.liqid.de security_txt: url: https://www.liqid.de/.well-known/security.txt http_status: 200 content_type: text/plain; charset=utf-8 file: well-known/liqid-security.txt fields_present: - Contact fields_missing: - Expires - Encryption - Preferred-Languages - Policy - Acknowledgments rfc9116_conformant: false rfc9116_note: >- RFC 9116 requires an Expires field; this file carries only two comment lines and a single Contact field, so it is a valid pointer but not a conformant security.txt. evidence: - source: https://www.liqid.de/.well-known/security.txt kind: served security.txt http_status: 200 fetched: '2026-08-25' - source: https://vdp.liqid.de kind: vulnerability disclosure policy page http_status: 200 fetched: '2026-08-25'