Middle-adult female Caucasian mentor supervisor help male african intern explain computer work corporate software. Businesswoman instruct trainee new worker

Protecting Our Community Together

At Follett, we prioritize the security and integrity of our educational technology solutions. We recognize the vital role that independent security researchers play in identifying and mitigating potential vulnerabilities, ensuring data protection for students, educators, and institutions.

Our Commitment to Security

We handle every reported vulnerability with the utmost seriousness, striving to address each one swiftly and effectively. By working hand in hand with the security community, we ensure our platforms remain secure and reliable.

Follett Values

We are dedicated to protecting our customers’ data, and this commitment extends to collaborating with external security researchers who share our dedication to security and integrity.

Join Our Security Champions

If you have the skills to identify security vulnerabilities, report them responsibly. Your contributions help us maintain a safe and secure environment for all users.

Recognizing Excellence in Security

We proudly acknowledge the efforts of security researchers who have responsibly reported potential issues. Your integrity helps us safeguard sensitive data and maintain the trust of our users.

Hall of Fame

Ashar Ahmed – June 13, 2024

Dylan Davis, Secruin Inc. – July 1, 2024

We extend our heartfelt thanks to these individuals for their honesty and integrity in reporting issues directly to us.

How to Report a Vulnerability

To report a potential security issue with a Follett product or technology, please submit our vulnerability submission form or email us at [email protected] with the following details:

  • Product or technology name
  • Potential impact of the vulnerability
  • Detailed description of the vulnerability, including reproducible steps
  • A working proof of concept
  • Ensure that all submissions containing sensitive information are encrypted. If you need assistance with the encryption process, contact us for support.

Join Our Security Champions

If you have the skills to identify security vulnerabilities, report them responsibly. Your contributions help us maintain a safe and secure environment for all users.

Our Process

Upon receiving a report, our security team will:

  • Acknowledge receipt promptly.
  • Provide an estimated timeframe for addressing the reported issue.
  • Notify you once the vulnerability is fixed.

By submitting a vulnerability, you agree to:

  • Allow Follett reasonable time to assess and remedy the issue.
  • Keep the reported vulnerability confidential until it is resolved.
  • Not disclose the vulnerability to third parties.

Security Researcher Recognition

We value every researcher who reports a vulnerability. While we do not offer monetary rewards, we highlight significant contributions by featuring researchers on our Follett Software Security Champions page.

By submitting a potential security issue, you grant Follett the right to display your name and recognize your efforts. Thank you for helping us improve the security of our solutions. Together, we can create a safer digital environment for everyone.