OpsLevel Logo
Product
Developer portal
Software catalog
Understand your entire architecture at a glance
Standards
Your guide to safe, reliable software
Developer self-service
Empower developers to move faster, risk-free
Integrations
Connect your most powerful third-party tools
Use Cases
Ownership
Build accountability and clarity into your catalog
Standardization
Set and rollout best practices for your software
Developer Experience
Free up your team to focus on high-impact work
Customers
Resources
All Resources
Our full library of resources
Pricing
Flexible and designed for your unique needs
Podcast
Podcast
Conversations with technical leaders
Blog
Blog
DevOps resources, tips, and best practices
Demo
Demo
Videos of our product and features
Tech talk
Tech talk
Our POV on technical topics
Guide
Guide
Practical resources to roll out new programs and features
DocsLog In
Talk to usTry for free
No items found.
Table of contents
Links will generate here
Home
Legal

Responsible Disclosure

OpsLevel welcomes and encourages security research reports regarding vulnerabilities with our systems. We do not prosecute people who discover and report vulnerabilities to us responsibly and according to the below guidelines. We treat all reports seriously and with high priority.

Guidelines

  • Please avoid any privacy violations, degradations and disruption to our production systems during your testing. This includes any activity that has an impact to the availability of our systems.
  • Do not attempt to brute-force or spam our systems. Specifically, please avoid the use of automated vulnerability scanning tools.
  • Never exploit a vulnerability you discover to view data or alter data without authorization.
  • Please keep information disclosed confidential between yourself and OpsLevel, until we resolve the issue. We will make our best efforts to fix issues in a short timeframe.

Scope

The following are in scope as part of our Responsible Disclosure Program:

  • app.opslevel.com

Vulnerability Submissions

Please report any security issues you find to security@opslevel.com. If your submission contains any sensitive vulnerability information, please encrypt it using our PGP public key at the bottom of this page.

Please include the following in your submission:

  • Your name and contact information
  • Company name (if applicable)
  • A detailed description of the potential vulnerability
  • Exact steps to reproduce the issue, including any associated URL and parameters demonstrating the vulnerability.
  • Any relevant details of your system’s configuration, such as any browser or user-agent information.
  • Your IP address and OpsLevel account, to coordinate with our logs.

Reward

A reward may be awarded after verifying that the vulnerability is reproducible, unique, and has an impact to our customers. Each submission will be evaluated case-by-case. The decision and amount of the reward will be at our discretion.

Thank You

We want to make sure to sincerely thank you for your disclosing responsibly and working with us improve our security. We understand the work and talent you've put into finding these issues and appreciate you reaching out to us.

Hall of Fame

We'd like to thank the following researchers for their responsible reporting of vulnerabilities. Thank you for helping us keep OpsLevel secure.

  • Paul O'Sullivan (2023)
  • Lee Boynton (2021)
  • Mehedi Hason (2020)

Our PGP Key

If you are submitting sensitive vulnerability information or wish to communicate with us privately about your concern, you can use the following PGP key to encrypt your message to us.

OpsLevel Logo
Subscribe
Join our newsletter to stay up to date on features and releases.
By subscribing you agree to with our Privacy Policy and provide consent to receive updates from our company.
SOC 2AICPA SOC
Product
Software CatalogMaturityIntegrationsSelf-serviceRequest a demo
Company
About usCareersContact UsCustomersPartnersSecurity
Resources
Docs
Blog
Demo
© 1999 J/K Labs Inc. All rights reserved.
Cookie Preferences
Terms of Use
Privacy Policy
Responsible Disclosure
By using this website, you agree to the storing of cookies on your device to enhance site navigation, analyze site usage, and assist in our marketing efforts. View our Data Processing Agreement for more information.
Okay!