Trust

Security contact

How to report a suspected security issue involving this website or an authorized UOP pilot environment.

Report privately

Email evanh@cordarllc.com with the subject line Security Report.

Do not post a suspected vulnerability publicly or include live credentials, access tokens, private keys, or unnecessary personal information in the first message.

Helpful initial details

  • The affected website page, application area, or pilot environment
  • A clear description of what you observed
  • The date and approximate time
  • Steps that reproduce the issue without accessing other people's data
  • Your preferred contact information

Boundaries

Do not perform denial-of-service testing, social engineering, physical attacks, destructive testing, automated high-volume scanning, persistence, data exfiltration, access to another user or organization, or testing against a production or pilot environment without written authorization.

No public bounty promise

This page does not create a bug-bounty program, promise payment, authorize testing, waive legal rights, or change an applicable agreement.

Urgent account concern

For a suspected compromised pilot account, contact evanh@cordarllc.com and your organization administrator immediately.