Sailing Virgins

Security Vulnerability Reporting

We take the security of our platform seriously. If you've found a vulnerability, we appreciate your help in disclosing it responsibly.

Responsible Disclosure Policy

Report Privately

Please report vulnerabilities through this form or email us directly. Do not disclose publicly until we've had time to address the issue.

Response Timeline

We aim to acknowledge reports within 48 hours and provide an initial assessment within 5 business days.

Safe Harbor

We will not take legal action against researchers who follow this policy and act in good faith.

What to Include

Provide a clear description, steps to reproduce, affected URLs/endpoints, and the potential impact of the vulnerability.

Out of Scope

Denial of service attacks, social engineering, spam, and issues in third-party services are out of scope.

Recognition

We appreciate security researchers and will acknowledge your contribution if a valid vulnerability is confirmed.

In-Scope Systems

sailingvirgins.com and subdomains
platform.sailingvirgins.com
southerlyapp.com and subdomains

Report a Vulnerability

Use the form below or email us directly at [email protected]

For general inquiries, please visit our support page or contact us.