Report a vulnerability safely.
If you find a problem in a public MITECH system, send enough detail for us to assess and address it without guesswork.
- SCOPE
- The public MITECH Digital website and services clearly operated under the MITECH identity. Do not test third-party systems or services you are not authorised to access.
- REPORT
- Send a report to contact@mitech.help. Include the affected URL or endpoint, reproduction steps, observed impact, and a proof of concept where useful.
- TESTING LIMITS
- Do not disrupt a service, access data that is not yours, or modify or delete data. Stop if testing could affect another person.