We ask you:
• Email your findings to cvd-security@quooker.com. Encrypt your findings with our PGP key, which can be found at the bottom of this page as a download.
• Mention a name or alias and preferred method of communication (and associated details).
• Not to abuse the problem by downloading more data than is necessary to demonstrate the leak or by viewing, deleting, or modifying data related to our systems.
• Do not share the issue with others until it is resolved and erase all confidential information after the vulnerability is closed.
• Not to use attacks on physical security, social engineering, distributed denial of service, spam or third-party applications.
• In case of an embedded product, please provide information such as product name and serial number, the firmware or software version, and any relevant additional information.
• For web-based services, please provide the date and time of testing, URLs, the browser type and version, as well as the input provided to the application.
• Please provide any details on the tools used to conduct the testing and any relevant test configurations.
• Please provide a copy if you wrote specific proof-of-concept or exploit code.
• Please do not publish the vulnerability without our written approval.