# We run coordinated disclosure for the organisations we work with. # The same applies to us. If you find a weakness in sentra.be or in any # system Sentra operates, we want to hear about it, and we will not # come after you for telling us. # # What we ask: # - Report privately to the address below before disclosing publicly. # - Give us 90 days to fix it. If we need longer, we will say so and why. # - Do not access, modify or exfiltrate data that is not yours. A proof # of concept that demonstrates the issue is enough. # - No denial of service, no social engineering of our people or clients, # no high-volume automated scanning. # # What you get: an acknowledgement within two working days, a real person # handling it, credit if you want it, and honesty about the timeline. # # Fields below follow RFC 9116, in the order used by https://securitytxt.org/ Contact: mailto:security@sentra.be Expires: 2027-08-01T00:00:00.000Z Preferred-Languages: en,nl Canonical: https://sentra.be/.well-known/security.txt