Security.txt : Différence entre versions

De Docaposte Cyberdéfense
Aller à : navigation, rechercher
Ligne 11 : Ligne 11 :
 
----
 
----
 
The security of this site is of great importance and every effort is made to maintain industry-leading standards and processes. Security updates to all levels of software are implemented within a very short time-frame and the site is monitored constantly for modified files and unauthorised login attempts. Unless it is absolutely necessary to deliver the content or service you have requested, we do not record or process personal data. All links to third party sites are clearly marked and embedded content is identifiable and disclosed. For more information please refer to our privacy policy.
 
The security of this site is of great importance and every effort is made to maintain industry-leading standards and processes. Security updates to all levels of software are implemented within a very short time-frame and the site is monitored constantly for modified files and unauthorised login attempts. Unless it is absolutely necessary to deliver the content or service you have requested, we do not record or process personal data. All links to third party sites are clearly marked and embedded content is identifiable and disclosed. For more information please refer to our privacy policy.
 +
----
 +
 +
----
 +
If you believe this site has a security vulnerability, we would be very happy to hear from you, provided that you follow the terms of our disclosure process:
 +
 +
* The disclosure must be made following the contact procedure set out above.
 +
* The disclosure may be made anonymously.
 +
* The disclosure you make to us should relate directly to this site or to the email service associated with it.
 +
* The disclosure must relate to a service in our control, rather than to a matter which is the responsibility of a third party providing a service to us.
 +
*The disclosure must not be released to the public without our prior consent.
 +
Abusive or threatening language, harassment, impersonation, or any other kind of criminal activity, will be reported to the relevant authorities and pursued to the full extent of the law.
 +
Automated penetration testing or unauthorised attempts to gain access to our site will be treated by us as a deliberate attack and be subject to legal action.
 
----
 
----

Version du 5 juillet 2021 à 12:08

Security contact


We provide a security.txt file for structured security contact information. You may also use email, via csirt@docaposte.fr addresse, but please remember that email is unencrypted by default and should not contain confidential or security-related information.


Disclosure policy


The security of this site is of great importance and every effort is made to maintain industry-leading standards and processes. Security updates to all levels of software are implemented within a very short time-frame and the site is monitored constantly for modified files and unauthorised login attempts. Unless it is absolutely necessary to deliver the content or service you have requested, we do not record or process personal data. All links to third party sites are clearly marked and embedded content is identifiable and disclosed. For more information please refer to our privacy policy.



If you believe this site has a security vulnerability, we would be very happy to hear from you, provided that you follow the terms of our disclosure process:

  • The disclosure must be made following the contact procedure set out above.
  • The disclosure may be made anonymously.
  • The disclosure you make to us should relate directly to this site or to the email service associated with it.
  • The disclosure must relate to a service in our control, rather than to a matter which is the responsibility of a third party providing a service to us.
  • The disclosure must not be released to the public without our prior consent.

Abusive or threatening language, harassment, impersonation, or any other kind of criminal activity, will be reported to the relevant authorities and pursued to the full extent of the law. Automated penetration testing or unauthorised attempts to gain access to our site will be treated by us as a deliberate attack and be subject to legal action.