Trust
Security contact
How to report a suspected security issue involving this website or an authorized UOP pilot environment.
Report privately
Email evanh@cordarllc.com with the subject line Security Report.
Do not post a suspected vulnerability publicly or include live credentials, access tokens, private keys, or unnecessary personal information in the first message.
Helpful initial details
- The affected website page, application area, or pilot environment
- A clear description of what you observed
- The date and approximate time
- Steps that reproduce the issue without accessing other people's data
- Your preferred contact information
Boundaries
Do not perform denial-of-service testing, social engineering, physical attacks, destructive testing, automated high-volume scanning, persistence, data exfiltration, access to another user or organization, or testing against a production or pilot environment without written authorization.
No public bounty promise
This page does not create a bug-bounty program, promise payment, authorize testing, waive legal rights, or change an applicable agreement.
Urgent account concern
For a suspected compromised pilot account, contact evanh@cordarllc.com and your organization administrator immediately.