Skip to content
MSPagenda

Policy

Security policy

How to report a security issue affecting MSP Agenda: what to include, what happens next, and the standards we hold the site to.

Reporting a vulnerability

If you believe you have found a security issue affecting this website, report it to {{TBC: security contact email}}. The same details are published in machine-readable form at /.well-known/security.txt.

Please include:

  • The page or address affected.
  • Steps to reproduce the issue, with any relevant requests or screenshots.
  • The potential impact you believe it could have.

What happens next

  • Acknowledgement of your report within {{TBC: acknowledgement time, e.g. 2 working days}.
  • An initial assessment and, where accepted, a target fix window of {{TBC: remediation target, e.g. 30 days} depending on severity.
  • Credit on an acknowledgments page if you would like it: {{TBC: acknowledgments page URL}.

Scope and ground rules

  • This policy covers the MSP Agenda website at mspagenda.com.
  • Do not access, modify or delete data that is not yours.
  • Do not run denial-of-service testing or automated scanning that degrades the site.
  • Give us reasonable time to fix an issue before any public disclosure.

How the site is protected

{{TBC: summary of security practices, e.g. hosting protections, encryption, access controls}}

Growth beats guesswork.

Email us

We use analytics cookies to understand which pages are useful. Nothing is measured until you choose. Cookie details