Skip to main content
BambooPaper.in
Policies

Security Credits

Public acknowledgement of security researchers who have responsibly disclosed vulnerabilities to BambooPaper.in. Listed with the reporter's permission per our security policy.

Last updated:

This page acknowledges security researchers who have privately reported vulnerabilities to BambooPaper.in and given written permission to be credited publicly. We list reporters in reverse-chronological order by disclosure date.

Our vulnerability-disclosure policy, scope and SLA are documented at /security/. Reports go to security@bamboopaper.in.

Credited researchers

No researchers credited yet — we launched the formal disclosure programme in May 2026 and acknowledgements will appear here as valid reports come in and the researcher consents to public credit.

If you've found a vulnerability, please email security@bamboopaper.in — we acknowledge within 2 business days.

How to be credited

  1. Email a vulnerability report to security@bamboopaper.in.
  2. Wait for us to triage and ship a fix (per the SLA in our security policy).
  3. Once the fix is live, we'll email you with a draft credit line — name, optional profile link, one-sentence summary, disclosure date.
  4. Reply with your consent (and any edits to the wording), and we publish on the next deploy.

We never publish credit without explicit written consent. If you prefer to remain anonymous, just say so — the fix still ships, you just won't appear on this page.