generated: '2026-09-04' method: searched probe: true source: https://www.legionintel.com/.well-known/security.txt note: >- RFC 9116 security.txt is served (HTTP 200, text/plain) across the whole legionintel.com Cloudflare zone — www, api, auth, platform and docs all return the same 68-byte body. It carries only Contact and Expires: there is no Policy:, Encryption:, Acknowledgments:, Preferred-Languages: or Canonical: field, and no separate responsible-disclosure or bug-bounty page was found on the site (no HackerOne / Bugcrowd / Intigriti program). The Contact address is an abuse@ alias rather than a security@ alias. security_txt: url: https://www.legionintel.com/.well-known/security.txt http_status: 200 file: ../well-known/yurts-security.txt fields: contact: - mailto:abuse@legionintel.com expires: '2027-12-01T17:35:00Z' policy: null encryption: null acknowledgments: null canonical: null contact: - mailto:abuse@legionintel.com policy_url: null bug_bounty: program: null platform: null searched: - hackerone - bugcrowd - intigriti related: - type: security-page url: https://www.legionintel.com/security http_status: 200 evidence: - source: https://www.legionintel.com/.well-known/security.txt http_status: 200 kind: RFC 9116 security.txt (fetched verbatim to well-known/yurts-security.txt) - source: https://legionintel.com/.well-known/security.txt http_status: 404 kind: apex host does not serve it