Adventist Mall’s Responsible Disclosure Policy

At Adventist Mall we highly regard our security systems, we constantly purpose to enhance the safety of our website and related application to give our customer a safer experience as they browse and use our systems. However, in some rare instances if a member of the general public or a researcher identifies a vulnerability in our systems and responsibly shares the details with us, we acknowledge their contributions and closely work with them to address the issue with urgency. We will give a public acknowledge for their recognition.

How to report an issue?

Please use the following procedure to report any issue regarding vulnerability on our site.

Send us an email immediately to security@adventistmall.co.ke providing us with the necessary details for recreation of the vulnerability scenario. You can share text, images from screenshots, or video instructions.

Whenever possible, share with us your contact details (phone number, email) to enable us reach you could we desire more details.

If you would like to make the issue public for educational or any other purpose, please allow us adequate time to rectify the issue. Our security team will work with you to estimate the time it may take us to fix the issue and our commitment to address the issue.

If the vulnerability would be potentially used to extract information from our website such as customer data, please desist from exploiting such a vulnerability. It would be necessary for us to consider your disclosure with a good will.

Whereas we appreciate the efforts of Whitehat Hackers, we may pursue a legal course could the identified vulnerabilities be exploited to access our customer data, impair our systems, or for unlawful gains.

Acknowledgements

We do not have a cash or bounty reward for such disclosures, but we will express our gratitude for your contribution in different ways. In instances of severe vulnerabilities, we would gladly publicly acknowledge your contribution in this section on our website only if you would like a public acknowledgement.