Policies & transparency
Security & Responsible Disclosure
This page provides an authorized channel for reporting potential security issues involving the public PhotoStat Technologies website.
1. Authorized scope
Reports may concern only the public website at photostattechnologies.com and www.photostattechnologies.com. Do not access customer environments, third-party systems, employee accounts, physical systems, cameras, access controls, telephony, cloud tenants, or any other asset.
2. Rules for research
Avoid privacy violations, social engineering, phishing, credential attacks, denial of service, destructive testing, persistence, data modification, automated high-volume scanning, and access beyond the minimum required to demonstrate an issue.
3. Reporting
Send findings to admin@photostattechnologies.com with the affected URL, concise description, reproduction steps, impact, and any safe evidence. Do not include personal data, credentials, secrets, or data taken from others.
4. Response
We aim to acknowledge a credible report within five business days and may provide updates as reasonably appropriate. This is a target, not a service-level commitment. Submission does not create a service, bounty, employment, or confidentiality agreement unless separately signed.
5. No testing authorization
This page provides a reporting channel; it does not authorize intrusive, automated, destructive, or unlawful testing. If you are uncertain whether an activity is permitted, do not perform it and contact us first.
Contact
PhotoStat Technologies
954 Lexington Ave., New York, NY 10021, United States
admin@photostattechnologies.com
Service-specific terms: A signed proposal, order, statement of work, or managed-service agreement controls the actual scope, pricing, responsibilities, and commercial terms of an engagement.