Hacker Newsnew | past | comments | ask | show | jobs | submitlogin

If this was disclosed via a vulnerability disclosure or bug bounty program and there are no indicators of a data breach then it's effectively like the findings from a pen-test so very likely no regulatory reporting requirements.


Guidelines | FAQ | Lists | API | Security | Legal | Apply to YC | Contact

Search: