Coordinated Vulnerabilities Disclosure Policy
Manufacturer: Luna Innovations
Policy owner: Product Security Incident Response Team — PSIRT
Created / last modified: 2026-08-24
Next scheduled review: 2027-10-01 Version: 1.0
Luna Innovations is committed to maintaining the security of our products, services, and systems. If you believe you have identified a potential security vulnerability, please report it to us promptly. Your responsible disclosure gives our team an opportunity to investigate the issue and take appropriate corrective action.
We appreciate the contributions of security researchers who help us strengthen the security of Luna products and systems through responsible disclosure. Luna does not currently offer financial compensation, bounties, or other rewards for vulnerability reports. All reports are submitted voluntarily and support our ongoing efforts to improve security.
-
Scope
-
Vulnerability Reporting Channels
-
Secure Communication
-
Information to Include in a Vulnerability Report
-
Luna’s Assurances to Reporting Entities
-
Code of Conduct for Reporting Entities
-
Response Times
-
Handling of Actively Exploited Vulnerabilities
-
Vulnerability Validation and Assessment
-
Public Disclosure
-
Status Enquiries and Communication
-
Anonymous Reporting
-
End of the CVD Process
-
Privacy Notice
-
Related Security Resources
-
Review and Maintenance