Our Commitment to Security
We handle every reported vulnerability with the utmost seriousness, striving to address each one swiftly and effectively. By working hand in hand with the security community, we ensure our platforms remain secure and reliable.
Follett Values
We are dedicated to protecting our customers’ data, and this commitment extends to collaborating with external security researchers who share our dedication to security and integrity.
Join Our Security Champions
If you have the skills to identify security vulnerabilities, report them responsibly. Your contributions help us maintain a safe and secure environment for all users.
Recognizing Excellence in Security
We proudly acknowledge the efforts of security researchers who have responsibly reported potential issues. Your integrity helps us safeguard sensitive data and maintain the trust of our users.
Hall of Fame
Ashar Ahmed – June 13, 2024
Dylan Davis, Secruin Inc. – July 1, 2024
We extend our heartfelt thanks to these individuals for their honesty and integrity in reporting issues directly to us.
How to Report a Vulnerability
To report a potential security issue with a Follett product or technology, please submit our vulnerability submission form or email us at [email protected] with the following details:
- Product or technology name
- Potential impact of the vulnerability
- Detailed description of the vulnerability, including reproducible steps
- A working proof of concept
- Ensure that all submissions containing sensitive information are encrypted. If you need assistance with the encryption process, contact us for support.
Join Our Security Champions
If you have the skills to identify security vulnerabilities, report them responsibly. Your contributions help us maintain a safe and secure environment for all users.
If you have the skills to identify security vulnerabilities, report them responsibly. Your contributions help us maintain a safe and secure environment for all users.
Our Process
Upon receiving a report, our security team will:
- Acknowledge receipt promptly.
- Provide an estimated timeframe for addressing the reported issue.
- Notify you once the vulnerability is fixed.
By submitting a vulnerability, you agree to:
- Allow Follett reasonable time to assess and remedy the issue.
- Keep the reported vulnerability confidential until it is resolved.
- Not disclose the vulnerability to third parties.
Security Researcher Recognition
We value every researcher who reports a vulnerability. While we do not offer monetary rewards, we highlight significant contributions by featuring researchers on our Follett Software Security Champions page.
By submitting a potential security issue, you grant Follett the right to display your name and recognize your efforts. Thank you for helping us improve the security of our solutions. Together, we can create a safer digital environment for everyone.