If you believe you have discovered a security vulnerability in the products of Aura Home Inc (The following will be referred to as Aura), you can fill out the template and send the security issue directly to security@auraframes.com. You will typically receive an invitation from HackerOne, our VDP provider, via email within 2 business days. After you submit the report via HackerOne, our security team will provide remediation as soon as possible depending on the severity and the complexity of the vulnerabilities.
Responsible Disclosure Guidelines
As this is a HackerOne-managed program, please do not discuss this program or any vulnerabilities (even resolved ones) outside of the program without express consent from the organization.
More details for the disclosure guidelines, please visit:
https://www.hackerone.com/disclosure-guidelines
Response Scope
This vulnerability handling process applies to three assets:
Aura Home Inc (The following will be referred to as Aura) is committed to ensuring the security of our systems and the data of our customers.
Here is a recap of Aura’s Triage Lifecycle via HackerOne.
For more information, please visit:
https://www.hackerone.com/hackerones-depth-approach-vulnerability-triage-and-validation
The contents of the Report will be made available to the Security Team immediately, and will initially remain non-public to allow the Security Team sufficient time to publish a remediation. After the Report has been closed, Public disclosure may be requested by either the Finder or the Security Team.