GFCRC-inverted
Good Practices

Good Practice / Ethical Standards for Researchers

The GFCRC supports the following living definition of a good-faith researcher, put together by our board member Tarah Wheeler and distinguished information security researchers. We stand by the enclosed codes of conduct for researchers and best practices for vulnerability owners in response.

This definition is designed so that anyone is welcome to contribute in a positive and transparent way through pull requests on GitHub for full transparency.

Guidance for Vendors / Consumers

HackerOne‘s Gold Standard Safe Harbor initiative – code of practices for companies to help protect good faith researchers

https://hackerone.com/security/safe_harbor