generated: '2026-08-01' method: searched probe: true source: https://trust.manypets.com/ status: declared-not-published note: >- ManyPets publicly declares a Responsible Disclosure control on its SafeBase-hosted trust centre (listed under "App Security", alongside Application Penetration Testing and Vulnerability & Patch Management). The control is publicly VISIBLE but the policy document itself is behind a SafeBase access request, and no reporting contact is published. Because there is no publicly reachable disclosure policy page or security contact, apis.yml carries a VulnerabilityDisclosure pointer but deliberately does NOT carry a `Security` pointer — that would credit a published disclosure policy ManyPets does not actually publish. Upgrade this file (and add the Security pointer) if a real policy URL or security@ contact appears. policy: [] contact: [] public_policy: false bug_bounty: null security_txt: false declared_controls: - Responsible Disclosure - Application Penetration Testing - Vulnerability & Patch Management - Threat Detection - Data Breach Notifications probes: - {url: 'https://manypets.com/.well-known/security.txt', status: 404} - {url: 'https://www.manypets.com/.well-known/security.txt', status: 404} - {url: 'https://many-group.com/.well-known/security.txt', status: 404} - {url: 'https://trust.manypets.com/.well-known/security.txt', status: 404} - {url: 'https://manypets.com/uk/security/', status: 404} - {url: 'https://manypets.com/uk/responsible-disclosure/', status: 404} evidence: - source: https://trust.manypets.com/ kind: trust-center-control-listing keywords: [responsible disclosure, application penetration testing, vulnerability & patch management] x-evidence: fetched: '2026-08-01' url: https://trust.manypets.com/ http_status: 200 content_type: text/html; charset=utf-8