Security
Responsible disclosure
Found a vulnerability in our services? Report it to us: we'll fix it and thank you.
What to report
We accept reports on proxyhub.it, the app.proxyhub.it client area and our Proxy infrastructure: unauthorized access, other customers' data exposed, authentication or payment flaws, code injection and similar.
How to report
Write to info@proxyhub.it with the subject "Security". Describe the issue, the steps to reproduce it and the possible impact. We reply to confirm receipt and keep you updated until it's fixed.
Rules for good-faith research
- Don't access, change or delete other customers' data: stop at the minimum proof.
- No denial-of-service attacks, spam or tests that slow down customers' Proxies.
- No social engineering of customers or staff, and no physical access.
- Give us reasonable time to fix it before making the issue public.
Our commitment
- We won't take legal action against anyone reporting in good faith and following these rules.
- We fix confirmed vulnerabilities as soon as possible, according to severity.
- We don't offer monetary rewards at the moment, but on request we publicly thank those who help us.
