Vulnerability Disclosure Program
Guidelines for good-faith security research
See Section 7.3 of the Terms of Service.
We welcome reports from security researchers. Research that follows these rules is authorized under Section 7.3 of our Terms of Service. Research outside these rules is not authorized.
Scope
- lexaxiom.com and its subdomains operated by LexAxiom; and
- LexAxiom platform accounts that you own or have explicit permission to test.
Rules
- Do not access, modify, or delete data that does not belong to you. If you encounter another person's data, stop and report it.
- Do not perform denial-of-service testing, social engineering, phishing, or physical attacks.
- Do not degrade the Services for other users.
- Give us a reasonable opportunity to fix a reported issue before disclosing it publicly.
How to Report
Email security@lexaxiom.com with a description of the issue, the steps to reproduce it, and its potential impact. We will acknowledge your report and keep you informed as we investigate.
Questions: legal@lexaxiom.com · privacy@lexaxiom.com