Please contact us right away if you believe you have discovered a security vulnerability affecting BizGiz.com.

We take valid security reports seriously and will review verified issues as quickly as reasonably possible.

Before submitting a report, please review the following responsible disclosure guidelines.

SECTION 1 – CORE PRINCIPLES

BizGiz supports responsible security research conducted in good faith.

When reporting a potential vulnerability, we ask that you:

  1. Allow Reasonable Time
    Give us sufficient time to investigate and address the issue before publicly disclosing it.
  2. Respect User Privacy
    Do not access, download, modify, or disclose another person's personal information.
  3. Act in Good Faith
    Do not intentionally disrupt our website, services, customers, systems, or data.
  4. Do Not Exploit the Vulnerability
    Only perform the minimum testing necessary to confirm the issue. Do not use a vulnerability to access sensitive information, gain unauthorized privileges, or cause damage.
  5. Follow Applicable Laws
    Your security research must comply with all applicable laws and regulations.

SECTION 2 – RESPONSIBLE DISCLOSURE

To help us investigate a security issue, please provide enough information for our team to understand and reproduce the problem.

A useful report should include:

  • A clear description of the vulnerability
  • Steps to reproduce the issue
  • The affected page, feature, or URL
  • The potential security impact
  • Relevant screenshots or supporting information
  • Any other details that may help us investigate

If you accidentally access sensitive information while testing, stop immediately and report the issue to us. Do not save, copy, share, or continue accessing the information.

SECTION 3 – PROHIBITED TESTING

Please do not perform testing that could negatively affect BizGiz, our customers, or our service providers.

This includes:

  • Denial-of-Service (DoS or DDoS) attacks
  • Social engineering or phishing
  • Spam
  • Physical security attacks
  • Destructive testing
  • Modification or deletion of customer data
  • Accessing another customer's account
  • Automated testing that places excessive load on our systems
  • Installing malware or malicious software
  • Testing third-party systems that are not controlled by BizGiz

SECTION 4 – REPORTS THAT MAY NOT QUALIFY AS SECURITY VULNERABILITIES

Some reports may not represent a meaningful security risk by themselves, including:

  • Missing or recommended email security records without demonstrated impact
  • Clickjacking on pages that do not perform sensitive actions
  • Rate-limiting observations without a demonstrated security impact
  • Issues affecting unsupported or significantly outdated browsers
  • Issues requiring a compromised, rooted, or jailbroken device
  • General spam or phishing messages unrelated to BizGiz systems
  • Software version disclosures without a demonstrated vulnerability

We will review reports based on their actual security impact.

SECTION 5 – SECURITY REWARDS

BizGiz does not guarantee payment or compensation for vulnerability reports unless a specific security reward or bounty program has been announced by us in writing.

Any reward, if offered, is determined at the sole discretion of BizGiz based on factors such as severity, impact, report quality, and whether the issue was previously known.

HOW TO SUBMIT A REPORT

Please send security reports to:

Email: contact@bizgiz.com

When submitting your report, please include as much relevant information as possible so we can investigate efficiently.

CONTACT INFORMATION

📱 Phone: +1 (404) 997-2982

Email: contact@bizgiz.com

📍 Address: 4232 Wendell Dr SW, Atlanta, GA 30336, USA