Last revision: August 27, 2024
Thank you for taking the time to responsibly disclose the issues you find.
All security bugs in should be reported by email to security@artillery.io. This list is delivered to a subset of the core team who handle security issues. Your email will be acknowledged within 24 hours, and you’ll receive a more detailed response to your email within 2 business days indicating the next steps in handling your report.
This email address receives a large amount of spam, so be sure to use a descriptive subject line to avoid having your report be missed. After the initial reply to your report, the security team will endeavor to keep you informed of the progress being made towards a fix and full announcement. As recommended by RFPolicy, these updates will be sent at least every five days.
Artillery has a four step disclosure policy:
If you have any suggestions to improve this policy, please send an email to security@artillery.io.