SHLORBT

Security Policy

Introduction

SHLORBT Cloud treats security as a foundational responsibility rather than a reactive function. As a research and assurance laboratory working in system-level security domains, we recognize the importance of maintaining the integrity, availability, and confidentiality of our own digital presence and communications.

This Security Policy outlines how security concerns related to SHLORBT Cloud’s online presence, communications, and research operations may be reported and how such concerns are handled.


Scope of This Policy

This policy applies to security issues related to:

This policy does not apply to:


Reporting Security Issues

SHLORBT Cloud encourages the responsible reporting of security issues that may affect its operations or published materials.

Security issues may be reported via email to:

security@shlorbt.cloud

Reports should include sufficient detail to allow understanding and validation of the issue. Where possible, this may include the affected component, observed behavior, and any relevant technical context.

All reports should be submitted in good faith and without attempts to exploit, disrupt, or compromise systems beyond what is necessary to demonstrate the issue.


Responsible Testing Expectations

Individuals reporting security issues are expected to:

Testing that involves denial-of-service activity, social engineering, or physical access attempts is not authorized.


Handling and Response

Upon receiving a valid security report, SHLORBT Cloud will:

The timing and manner of any public communication related to a security issue will be determined based on severity, impact, and coordination requirements.


Safe Harbor

SHLORBT Cloud will not pursue legal action against individuals who report security issues responsibly, provided that they:

This safe harbor does not apply to activities conducted with malicious intent or in violation of applicable laws.


Relationship to Vulnerability Disclosure Policy

This Security Policy complements SHLORBT Cloud’s Vulnerability Disclosure Policy.
While this document focuses on security issues affecting SHLORBT Cloud’s own operations, the Vulnerability Disclosure Policy governs the reporting and coordinated disclosure of vulnerabilities identified through research activities.


Confidentiality and Information Handling

Information submitted as part of a security report is treated as confidential and is used solely for the purpose of investigation, remediation, and coordination. Such information is shared only with individuals or entities where necessary and appropriate.


Policy Updates

This Security Policy may be updated periodically to reflect changes in operations, research scope, or regulatory requirements. The most current version will be published on this site.


Contact

For security-related matters, please contact:

security@shlorbt.cloud

For general inquiries, please use:

contact@shlorbt.cloud