CINXE.COM
Responsible Disclosure - Guides to Services - State of Delaware
<!DOCTYPE html> <html lang="en-US"> <head><script>window['adrum-start-time'] = new Date().getTime();</script><script>(function(config){config.appKey='AD-AAB-ABF-EYU';})(window['adrum-config'] || (window['adrum-config'] = {}));</script><script src='/adrum.js'></script><script>window['adrum-start-time'] = new Date().getTime();</script><script>(function(config){config.appKey='AD-AAB-ABF-EYU';})(window['adrum-config'] || (window['adrum-config'] = {}));</script><script src='/adrum.js'></script> <meta charset="utf-8"> <meta http-equiv="X-UA-Compatible" content="IE=edge"> <meta name="viewport" content="width=device-width, initial-scale=1"> <!-- Favicon --> <link rel="icon" sizes="57x57" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-57x57.png"> <link rel="icon" sizes="60x60" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-60x60.png"> <link rel="icon" sizes="72x72" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-72x72.png"> <link rel="icon" sizes="76x76" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-76x76.png"> <link rel="icon" sizes="114x114" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-114x114.png"> <link rel="icon" sizes="120x120" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-120x120.png"> <link rel="icon" sizes="144x144" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-144x144.png"> <link rel="icon" sizes="152x152" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-152x152.png"> <link rel="icon" sizes="180x180" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/apple-icon-180x180.png"> <link rel="icon" type="image/png" sizes="192x192" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/android-icon-192x192.png"> <link rel="icon" type="image/png" sizes="32x32" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/favicon-32x32.png"> <link rel="icon" type="image/png" sizes="96x96" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/favicon-96x96.png"> <link rel="icon" type="image/png" sizes="16x16" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/favicon-16x16.png"> <link rel="manifest" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/manifest.json"> <meta name="msapplication-TileColor" content="#ffffff"> <meta name="msapplication-TileImage" content="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/ms-icon-144x144.png"> <meta name="theme-color" content="#ffffff"> <meta class="swiftype" name="domain" data-type="string" content="de-alpha-portal"> <!-- Bootstrap core CSS --> <link href="https://stackpath.bootstrapcdn.com/bootstrap/4.3.1/css/bootstrap.min.css" rel="stylesheet" integrity="sha384-ggOyR0iXCbMQv3Xipma34MD+dH/1fQ784/j6cY/iJTQUOhcWr7x9JvoRxT2MZw1T" crossorigin="anonymous"> <!-- Bootstrap 4 JS --> <script src="https://cdnjs.cloudflare.com/ajax/libs/popper.js/1.14.7/umd/popper.min.js" integrity="sha384-UO2eT0CpHqdSJQ6hJty5KVphtPhzWj9WO1clHTMGa3JDZwrnQq4sF86dIHNDz0W1" crossorigin="anonymous"></script> <script src="https://code.jquery.com/jquery-3.3.1.slim.min.js" integrity="sha384-q8i/X+965DzO0rT7abK41JStQIAqVgRVzpbzo5smXKp4YfRvH+8abtTE1Pi6jizo" crossorigin="anonymous"></script> <script src="https://stackpath.bootstrapcdn.com/bootstrap/4.3.1/js/bootstrap.min.js" integrity="sha384-JjSmVgyd0p3pXB1rRibZUAYoIIy6OrQ6VrjIEaFf/nJGzIxFDsf4x0xIM+B07jRM" crossorigin="anonymous"></script> <!-- Font Awesome Icons --> <script src="https://kit.fontawesome.com/f5656ce44b.js" crossorigin="anonymous"></script> <script type="text/javascript" language="javascript" src="https://cdn.datatables.net/1.10.21/js/jquery.dataTables.min.js"></script> <meta name='robots' content='index, follow, max-image-preview:large, max-snippet:-1, max-video-preview:-1' /> <!-- This site is optimized with the Yoast SEO plugin v22.2 - https://yoast.com/wordpress/plugins/seo/ --> <title>Responsible Disclosure - Guides to Services - State of Delaware</title> <meta name="description" content="Report a vulnerability or security issue for a State of Delaware website. Also read the Disclosure Policy from the Department of Technology and Information" /> <link rel="canonical" href="https://delaware.gov/responsible-disclosure/" /> <meta property="og:locale" content="en_US" /> <meta property="og:type" content="article" /> <meta property="og:title" content="Responsible Disclosure - Guides to Services - State of Delaware" /> <meta property="og:description" content="Report a vulnerability or security issue for a State of Delaware website. Also read the Disclosure Policy from the Department of Technology and Information" /> <meta property="og:url" content="https://delaware.gov/responsible-disclosure/" /> <meta property="og:site_name" content="Guides to Services - State of Delaware" /> <meta property="article:modified_time" content="2019-06-11T15:55:58+00:00" /> <meta name="twitter:card" content="summary_large_image" /> <script type="application/ld+json" class="yoast-schema-graph">{"@context":"https://schema.org","@graph":[{"@type":"WebPage","@id":"https://delaware.gov/responsible-disclosure/","url":"https://delaware.gov/responsible-disclosure/","name":"Responsible Disclosure - Guides to Services - State of Delaware","isPartOf":{"@id":"https://delaware.gov/#website"},"datePublished":"2019-06-06T16:33:26+00:00","dateModified":"2019-06-11T15:55:58+00:00","description":"Report a vulnerability or security issue for a State of Delaware website. Also read the Disclosure Policy from the Department of Technology and Information","inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https://delaware.gov/responsible-disclosure/"]}]},{"@type":"WebSite","@id":"https://delaware.gov/#website","url":"https://delaware.gov/","name":"Guides to Services - State of Delaware","description":"","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https://delaware.gov/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"}]}</script> <!-- / Yoast SEO plugin. --> <link rel='dns-prefetch' href='//f1-na.readspeaker.com' /> <link rel='dns-prefetch' href='//www.google.com' /> <link rel='dns-prefetch' href='//fonts.googleapis.com' /> <style type="text/css"> #wpadminbar #wp-admin-bar-my-networks > .ab-item:first-child:before { content: "\f325"; top: 3px; } </style> <link rel='stylesheet' id='wp-block-library-css' href='https://delaware.gov/wp-includes/css/dist/block-library/style.min.css?ver=6.4.3' type='text/css' media='all' /> <style id='wp-block-library-theme-inline-css' type='text/css'> .wp-block-audio figcaption{color:#555;font-size:13px;text-align:center}.is-dark-theme .wp-block-audio figcaption{color:hsla(0,0%,100%,.65)}.wp-block-audio{margin:0 0 1em}.wp-block-code{border:1px solid #ccc;border-radius:4px;font-family:Menlo,Consolas,monaco,monospace;padding:.8em 1em}.wp-block-embed figcaption{color:#555;font-size:13px;text-align:center}.is-dark-theme .wp-block-embed figcaption{color:hsla(0,0%,100%,.65)}.wp-block-embed{margin:0 0 1em}.blocks-gallery-caption{color:#555;font-size:13px;text-align:center}.is-dark-theme .blocks-gallery-caption{color:hsla(0,0%,100%,.65)}.wp-block-image figcaption{color:#555;font-size:13px;text-align:center}.is-dark-theme .wp-block-image figcaption{color:hsla(0,0%,100%,.65)}.wp-block-image{margin:0 0 1em}.wp-block-pullquote{border-bottom:4px solid;border-top:4px solid;color:currentColor;margin-bottom:1.75em}.wp-block-pullquote cite,.wp-block-pullquote footer,.wp-block-pullquote__citation{color:currentColor;font-size:.8125em;font-style:normal;text-transform:uppercase}.wp-block-quote{border-left:.25em solid;margin:0 0 1.75em;padding-left:1em}.wp-block-quote cite,.wp-block-quote footer{color:currentColor;font-size:.8125em;font-style:normal;position:relative}.wp-block-quote.has-text-align-right{border-left:none;border-right:.25em solid;padding-left:0;padding-right:1em}.wp-block-quote.has-text-align-center{border:none;padding-left:0}.wp-block-quote.is-large,.wp-block-quote.is-style-large,.wp-block-quote.is-style-plain{border:none}.wp-block-search .wp-block-search__label{font-weight:700}.wp-block-search__button{border:1px solid #ccc;padding:.375em .625em}:where(.wp-block-group.has-background){padding:1.25em 2.375em}.wp-block-separator.has-css-opacity{opacity:.4}.wp-block-separator{border:none;border-bottom:2px solid;margin-left:auto;margin-right:auto}.wp-block-separator.has-alpha-channel-opacity{opacity:1}.wp-block-separator:not(.is-style-wide):not(.is-style-dots){width:100px}.wp-block-separator.has-background:not(.is-style-dots){border-bottom:none;height:1px}.wp-block-separator.has-background:not(.is-style-wide):not(.is-style-dots){height:2px}.wp-block-table{margin:0 0 1em}.wp-block-table td,.wp-block-table th{word-break:normal}.wp-block-table figcaption{color:#555;font-size:13px;text-align:center}.is-dark-theme .wp-block-table figcaption{color:hsla(0,0%,100%,.65)}.wp-block-video figcaption{color:#555;font-size:13px;text-align:center}.is-dark-theme .wp-block-video figcaption{color:hsla(0,0%,100%,.65)}.wp-block-video{margin:0 0 1em}.wp-block-template-part.has-background{margin-bottom:0;margin-top:0;padding:1.25em 2.375em} </style> <style id='create-block-gic-file-block-style-inline-css' type='text/css'> .wp-block-file{margin-bottom:1.5em}.wp-block-file:not(.wp-element-button){font-size:.8em}.wp-block-file.aligncenter{text-align:center}.wp-block-file.alignright{text-align:right} </style> <link rel='stylesheet' id='gicblockpatterns-css-css' href='https://delaware.gov/wp-content/plugins/gic-block-manager/inc/css/gic-block-patterns.css?ver=1712942138' type='text/css' media='all' /> <style id='classic-theme-styles-inline-css' type='text/css'> /*! This file is auto-generated */ .wp-block-button__link{color:#fff;background-color:#32373c;border-radius:9999px;box-shadow:none;text-decoration:none;padding:calc(.667em + 2px) calc(1.333em + 2px);font-size:1.125em}.wp-block-file__button{background:#32373c;color:#fff;text-decoration:none} </style> <style id='global-styles-inline-css' type='text/css'> body{--wp--preset--color--black: #000000;--wp--preset--color--cyan-bluish-gray: #abb8c3;--wp--preset--color--white: #ffffff;--wp--preset--color--pale-pink: #f78da7;--wp--preset--color--vivid-red: #cf2e2e;--wp--preset--color--luminous-vivid-orange: #ff6900;--wp--preset--color--luminous-vivid-amber: #fcb900;--wp--preset--color--light-green-cyan: #7bdcb5;--wp--preset--color--vivid-green-cyan: #00d084;--wp--preset--color--pale-cyan-blue: #8ed1fc;--wp--preset--color--vivid-cyan-blue: #0693e3;--wp--preset--color--vivid-purple: #9b51e0;--wp--preset--gradient--vivid-cyan-blue-to-vivid-purple: linear-gradient(135deg,rgba(6,147,227,1) 0%,rgb(155,81,224) 100%);--wp--preset--gradient--light-green-cyan-to-vivid-green-cyan: linear-gradient(135deg,rgb(122,220,180) 0%,rgb(0,208,130) 100%);--wp--preset--gradient--luminous-vivid-amber-to-luminous-vivid-orange: linear-gradient(135deg,rgba(252,185,0,1) 0%,rgba(255,105,0,1) 100%);--wp--preset--gradient--luminous-vivid-orange-to-vivid-red: linear-gradient(135deg,rgba(255,105,0,1) 0%,rgb(207,46,46) 100%);--wp--preset--gradient--very-light-gray-to-cyan-bluish-gray: linear-gradient(135deg,rgb(238,238,238) 0%,rgb(169,184,195) 100%);--wp--preset--gradient--cool-to-warm-spectrum: linear-gradient(135deg,rgb(74,234,220) 0%,rgb(151,120,209) 20%,rgb(207,42,186) 40%,rgb(238,44,130) 60%,rgb(251,105,98) 80%,rgb(254,248,76) 100%);--wp--preset--gradient--blush-light-purple: linear-gradient(135deg,rgb(255,206,236) 0%,rgb(152,150,240) 100%);--wp--preset--gradient--blush-bordeaux: linear-gradient(135deg,rgb(254,205,165) 0%,rgb(254,45,45) 50%,rgb(107,0,62) 100%);--wp--preset--gradient--luminous-dusk: linear-gradient(135deg,rgb(255,203,112) 0%,rgb(199,81,192) 50%,rgb(65,88,208) 100%);--wp--preset--gradient--pale-ocean: linear-gradient(135deg,rgb(255,245,203) 0%,rgb(182,227,212) 50%,rgb(51,167,181) 100%);--wp--preset--gradient--electric-grass: linear-gradient(135deg,rgb(202,248,128) 0%,rgb(113,206,126) 100%);--wp--preset--gradient--midnight: linear-gradient(135deg,rgb(2,3,129) 0%,rgb(40,116,252) 100%);--wp--preset--font-size--small: 13px;--wp--preset--font-size--medium: 20px;--wp--preset--font-size--large: 36px;--wp--preset--font-size--x-large: 42px;--wp--preset--spacing--20: 0.44rem;--wp--preset--spacing--30: 0.67rem;--wp--preset--spacing--40: 1rem;--wp--preset--spacing--50: 1.5rem;--wp--preset--spacing--60: 2.25rem;--wp--preset--spacing--70: 3.38rem;--wp--preset--spacing--80: 5.06rem;--wp--preset--shadow--natural: 6px 6px 9px rgba(0, 0, 0, 0.2);--wp--preset--shadow--deep: 12px 12px 50px rgba(0, 0, 0, 0.4);--wp--preset--shadow--sharp: 6px 6px 0px rgba(0, 0, 0, 0.2);--wp--preset--shadow--outlined: 6px 6px 0px -3px rgba(255, 255, 255, 1), 6px 6px rgba(0, 0, 0, 1);--wp--preset--shadow--crisp: 6px 6px 0px rgba(0, 0, 0, 1);}:where(.is-layout-flex){gap: 0.5em;}:where(.is-layout-grid){gap: 0.5em;}body .is-layout-flow > .alignleft{float: left;margin-inline-start: 0;margin-inline-end: 2em;}body .is-layout-flow > .alignright{float: right;margin-inline-start: 2em;margin-inline-end: 0;}body .is-layout-flow > .aligncenter{margin-left: auto !important;margin-right: auto !important;}body .is-layout-constrained > .alignleft{float: left;margin-inline-start: 0;margin-inline-end: 2em;}body .is-layout-constrained > .alignright{float: right;margin-inline-start: 2em;margin-inline-end: 0;}body .is-layout-constrained > .aligncenter{margin-left: auto !important;margin-right: auto !important;}body .is-layout-constrained > :where(:not(.alignleft):not(.alignright):not(.alignfull)){max-width: var(--wp--style--global--content-size);margin-left: auto !important;margin-right: auto !important;}body .is-layout-constrained > .alignwide{max-width: var(--wp--style--global--wide-size);}body .is-layout-flex{display: flex;}body .is-layout-flex{flex-wrap: wrap;align-items: center;}body .is-layout-flex > *{margin: 0;}body .is-layout-grid{display: grid;}body .is-layout-grid > *{margin: 0;}:where(.wp-block-columns.is-layout-flex){gap: 2em;}:where(.wp-block-columns.is-layout-grid){gap: 2em;}:where(.wp-block-post-template.is-layout-flex){gap: 1.25em;}:where(.wp-block-post-template.is-layout-grid){gap: 1.25em;}.has-black-color{color: var(--wp--preset--color--black) !important;}.has-cyan-bluish-gray-color{color: var(--wp--preset--color--cyan-bluish-gray) !important;}.has-white-color{color: var(--wp--preset--color--white) !important;}.has-pale-pink-color{color: var(--wp--preset--color--pale-pink) !important;}.has-vivid-red-color{color: var(--wp--preset--color--vivid-red) !important;}.has-luminous-vivid-orange-color{color: var(--wp--preset--color--luminous-vivid-orange) !important;}.has-luminous-vivid-amber-color{color: var(--wp--preset--color--luminous-vivid-amber) !important;}.has-light-green-cyan-color{color: var(--wp--preset--color--light-green-cyan) !important;}.has-vivid-green-cyan-color{color: var(--wp--preset--color--vivid-green-cyan) !important;}.has-pale-cyan-blue-color{color: var(--wp--preset--color--pale-cyan-blue) !important;}.has-vivid-cyan-blue-color{color: var(--wp--preset--color--vivid-cyan-blue) !important;}.has-vivid-purple-color{color: var(--wp--preset--color--vivid-purple) !important;}.has-black-background-color{background-color: var(--wp--preset--color--black) !important;}.has-cyan-bluish-gray-background-color{background-color: var(--wp--preset--color--cyan-bluish-gray) !important;}.has-white-background-color{background-color: var(--wp--preset--color--white) !important;}.has-pale-pink-background-color{background-color: var(--wp--preset--color--pale-pink) !important;}.has-vivid-red-background-color{background-color: var(--wp--preset--color--vivid-red) !important;}.has-luminous-vivid-orange-background-color{background-color: var(--wp--preset--color--luminous-vivid-orange) !important;}.has-luminous-vivid-amber-background-color{background-color: var(--wp--preset--color--luminous-vivid-amber) !important;}.has-light-green-cyan-background-color{background-color: var(--wp--preset--color--light-green-cyan) !important;}.has-vivid-green-cyan-background-color{background-color: var(--wp--preset--color--vivid-green-cyan) !important;}.has-pale-cyan-blue-background-color{background-color: var(--wp--preset--color--pale-cyan-blue) !important;}.has-vivid-cyan-blue-background-color{background-color: var(--wp--preset--color--vivid-cyan-blue) !important;}.has-vivid-purple-background-color{background-color: var(--wp--preset--color--vivid-purple) !important;}.has-black-border-color{border-color: var(--wp--preset--color--black) !important;}.has-cyan-bluish-gray-border-color{border-color: var(--wp--preset--color--cyan-bluish-gray) !important;}.has-white-border-color{border-color: var(--wp--preset--color--white) !important;}.has-pale-pink-border-color{border-color: var(--wp--preset--color--pale-pink) !important;}.has-vivid-red-border-color{border-color: var(--wp--preset--color--vivid-red) !important;}.has-luminous-vivid-orange-border-color{border-color: var(--wp--preset--color--luminous-vivid-orange) !important;}.has-luminous-vivid-amber-border-color{border-color: var(--wp--preset--color--luminous-vivid-amber) !important;}.has-light-green-cyan-border-color{border-color: var(--wp--preset--color--light-green-cyan) !important;}.has-vivid-green-cyan-border-color{border-color: var(--wp--preset--color--vivid-green-cyan) !important;}.has-pale-cyan-blue-border-color{border-color: var(--wp--preset--color--pale-cyan-blue) !important;}.has-vivid-cyan-blue-border-color{border-color: var(--wp--preset--color--vivid-cyan-blue) !important;}.has-vivid-purple-border-color{border-color: var(--wp--preset--color--vivid-purple) !important;}.has-vivid-cyan-blue-to-vivid-purple-gradient-background{background: var(--wp--preset--gradient--vivid-cyan-blue-to-vivid-purple) !important;}.has-light-green-cyan-to-vivid-green-cyan-gradient-background{background: var(--wp--preset--gradient--light-green-cyan-to-vivid-green-cyan) !important;}.has-luminous-vivid-amber-to-luminous-vivid-orange-gradient-background{background: var(--wp--preset--gradient--luminous-vivid-amber-to-luminous-vivid-orange) !important;}.has-luminous-vivid-orange-to-vivid-red-gradient-background{background: var(--wp--preset--gradient--luminous-vivid-orange-to-vivid-red) !important;}.has-very-light-gray-to-cyan-bluish-gray-gradient-background{background: var(--wp--preset--gradient--very-light-gray-to-cyan-bluish-gray) !important;}.has-cool-to-warm-spectrum-gradient-background{background: var(--wp--preset--gradient--cool-to-warm-spectrum) !important;}.has-blush-light-purple-gradient-background{background: var(--wp--preset--gradient--blush-light-purple) !important;}.has-blush-bordeaux-gradient-background{background: var(--wp--preset--gradient--blush-bordeaux) !important;}.has-luminous-dusk-gradient-background{background: var(--wp--preset--gradient--luminous-dusk) !important;}.has-pale-ocean-gradient-background{background: var(--wp--preset--gradient--pale-ocean) !important;}.has-electric-grass-gradient-background{background: var(--wp--preset--gradient--electric-grass) !important;}.has-midnight-gradient-background{background: var(--wp--preset--gradient--midnight) !important;}.has-small-font-size{font-size: var(--wp--preset--font-size--small) !important;}.has-medium-font-size{font-size: var(--wp--preset--font-size--medium) !important;}.has-large-font-size{font-size: var(--wp--preset--font-size--large) !important;}.has-x-large-font-size{font-size: var(--wp--preset--font-size--x-large) !important;} .wp-block-navigation a:where(:not(.wp-element-button)){color: inherit;} :where(.wp-block-post-template.is-layout-flex){gap: 1.25em;}:where(.wp-block-post-template.is-layout-grid){gap: 1.25em;} :where(.wp-block-columns.is-layout-flex){gap: 2em;}:where(.wp-block-columns.is-layout-grid){gap: 2em;} .wp-block-pullquote{font-size: 1.5em;line-height: 1.6;} </style> <link rel='stylesheet' id='gic-css-library-css' href='https://delaware.gov/wp-content/mu-plugins/css/gic-css-library.css?ver=1.0.0' type='text/css' media='all' /> <link rel='stylesheet' id='mo_saml_admin_settings_style-css' href='https://delaware.gov/wp-content/plugins/miniorange-saml-20-single-sign-on/includes/css/jquery.ui.css?ver=6.4.3' type='text/css' media='all' /> <link rel='stylesheet' id='wp-styles-css' href='https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/style.css' type='text/css' media='screen, print' /> <link rel='stylesheet' id='agency-styles-css' href='https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/css/clf4css/clf4.css' type='text/css' media='all' /> <link rel='stylesheet' id='google-fonts-css' href='//fonts.googleapis.com/css?family=Open+Sans%3A300%2C400%2C600%2C700%2C800%7COpen+Sans+Condensed%3A300%2C300i%2C700&ver=all' type='text/css' media='all' /> <link rel='stylesheet' id='animate-min-css' href='https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/css/animate.min.css' type='text/css' media='all' /> <script type="text/javascript" src="https://delaware.gov/wp-includes/js/jquery/jquery.min.js?ver=3.7.1" id="jquery-core-js"></script> <script type="text/javascript" src="https://delaware.gov/wp-includes/js/jquery/jquery-migrate.min.js?ver=3.4.1" id="jquery-migrate-js"></script> <script type="text/javascript" src="https://delaware.gov/wp-content/plugins/miniorange-saml-20-single-sign-on/includes/js/settings.js?ver=6.4.3" id="mo_saml_admin_settings_script_widget-js"></script> <link rel="EditURI" type="application/rsd+xml" title="RSD" href="https://delaware.gov/xmlrpc.php?rsd" /> <meta name="generator" content="WordPress 6.4.3" /> <link rel='shortlink' href='https://delaware.gov/?p=3117' /> <link rel="alternate" type="application/json+oembed" href="https://delaware.gov/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fdelaware.gov%2Fresponsible-disclosure%2F" /> <link rel="alternate" type="text/xml+oembed" href="https://delaware.gov/wp-json/oembed/1.0/embed?url=https%3A%2F%2Fdelaware.gov%2Fresponsible-disclosure%2F&format=xml" /> <link rel="icon" href="https://delaware.gov/wp-content/uploads/sites/197/2020/11/cropped-alpha-favicon-96x96-1-32x32.png" sizes="32x32" /> <link rel="icon" href="https://delaware.gov/wp-content/uploads/sites/197/2020/11/cropped-alpha-favicon-96x96-1-192x192.png" sizes="192x192" /> <link rel="apple-touch-icon" href="https://delaware.gov/wp-content/uploads/sites/197/2020/11/cropped-alpha-favicon-96x96-1-180x180.png" /> <meta name="msapplication-TileImage" content="https://delaware.gov/wp-content/uploads/sites/197/2020/11/cropped-alpha-favicon-96x96-1-270x270.png" /> <!-- FUNNELBACK INCLUDES --> <link rel="stylesheet" type="text/css" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/funnelback/funnelback.autocompletion-2.6.0.css" /> <link type="text/css" media="screen" rel="stylesheet" href="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/funnelback/funnelback.css" /> <script src="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/funnelback/funnelbackConfig.js"></script> <script src="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/funnelback/typeahead.bundle-0.11.1.min.js"></script> <script src="https://cdn.jsdelivr.net/gh/Delaware-GIC/Funnelback/handlebars-4.7.7.min.js"></script> <script src="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/funnelback/funnelback.autocompletion-2.6.0.js"></script> <!-- END FUNNELBACK INCLUDES --> <!-- Google Tag Manager --> <script> (function(w, d, s, l, i) { w[l] = w[l] || []; w[l].push({ 'gtm.start': new Date().getTime(), event: 'gtm.js' }); var f = d.getElementsByTagName(s)[0], j = d.createElement(s), dl = l != 'dataLayer' ? '&l=' + l : ''; j.async = true; j.src = 'https://www.googletagmanager.com/gtm.js?id=' + i + dl; f.parentNode.insertBefore(j, f); })(window, document, 'script', 'dataLayer', 'GTM-NKD8LCM'); </script> <!-- End Google Tag Manager --> </head> <body class=""> <!-- Google Tag Manager (noscript) --> <noscript><iframe src="https://www.googletagmanager.com/ns.html?id=GTM-NKD8LCM" height="0" width="0" style="display:none;visibility:hidden"></iframe></noscript> <!-- End Google Tag Manager (noscript) --> <div class="thetop"></div> <!-- BEGIN Fixed Main Nav Bar --> <!-- Fixed navbar --> <!--<nav class="navbar navbar-default fixed-top"> <div class="container"> <div class="navbar-header"> <a class="skip-main" href="#main-section">Skip to Content</a> <a class="skip-main" href="#footer">Skip to Navigation</a> <a class="navbar-brand" href="https://delaware.gov"> <div class="delaware-logo d-inline-block align-middle"><span class="wave_text">Delaware.gov Home</span></div> <span id="mainBrand" class="d-none d-sm-none d-md-inline">Delaware.gov</span> </a> </div> <ul class="nav masthead-nav d-none d-sm-none d-md-block"> <li><a href="https://alpha.delaware.gov/state-directory"><i class="fas fa-building fa-fw"></i> Directory</a></li> <li><a href="https://news.delaware.gov"><i class="fas fa-newspaper fa-fw"></i> News</a></li> <li><a href="/guides"><i class="fas fa-map-signs fa-fw"></i> Guides</a></li> <li><a href="/contact/"><i class="fas fa-mobile-alt fa-fw"></i> Contact</a></li> </ul> <ul class="nav masthead-nav d-block d-sm-block d-md-none" id="del-nav-sm"> <li class="text-center"><a href="https://alpha.delaware.gov/state-directory"><i class="fas fa-building fa-fw"></i><br /><span class="font-mobile">Directory</span></a></li> <li class="text-center"><a href="https://news.delaware.gov"><i class="fas fa-newspaper fa-fw"></i><br /><span class="font-mobile">News</span></a></li> <li class="text-center"><a href="/guides"><i class="fas fa-map-signs fa-fw"></i><br /><span class="font-mobile">Guides</span></a></li> <li class="text-center"><a href="/contact/"><i class="fas fa-mobile-alt fa-fw"></i><br /><span class="font-mobile">Contact</span></a></li> </ul> </div> </nav><br />--> <!-- END Fixed Main Nav Bar --> <nav class="navbar navbar-default navbar-expand-md fixed-top"> <div class="container-fluid"> <a class="navbar-brand" href="/"> <div class="delaware-logo d-inline-block align-middle"><span class="wave_text text-white">Delaware.gov Home</span></div> <span id="mainBrand" class="d-none d-sm-none d-md-inline">Delaware.gov</span> </a> <a class="skip-main" href="#guides-interior">Skip to Content</a> <a class="skip-main" href="#footer">Skip to Navigation</a> <button class="navbar-toggler" type="button" data-toggle="collapse" data-target="#navbarNav" aria-controls="navbarNav" aria-expanded="false" aria-label="Toggle navigation"> <span class="sr-only">Toggle navigation</span> <span class="icon-bar"></span> <span class="icon-bar"></span> <span class="icon-bar"></span> </button> <div class="collapse navbar-collapse" id="navbarNav"> <ul class="navbar-nav masthead-nav mr-auto mt-2 mt-lg-0"> <li class="nav-item"><a class="nav-link" href="/state-directory"><i class="fas fa-building fa-fw" aria-hidden="true" title="Building Icon"></i> Directory</a></li> <li class="nav-item"><a class="nav-link" href="https://news.delaware.gov"><i class="fas fa-newspaper fa-fw" aria-hidden="true" title="Newspaper Icon"></i> News</a></li> <li class="nav-item"><a class="nav-link" href="/guides/"><i class="fas fa-map-signs fa-fw" aria-hidden="true" title="Signs Icon"></i> Guides</a></li> <li class="nav-item"><a class="nav-link" href="/contact"><i class="fas fa-mobile-alt fa-fw" aria-hidden="true" title="Mobile Phone Icon"></i> Contact</a></li> <li class="nav-item header-search-main" id="header-search-main"><span class="header-icon-main-search nav-link"><i class="far fa-search fa-fw" aria-hidden="true" title="Search Icon"></i> Search</span></li> </ul> <!--<div id="header-search-main" class="header-search-main pull-right"> <span class="header-icon-main-search"><i class="far fa-search fa-fw"></i></span> </div>--> </div> </div> <div id="header-search" class="header-search funnelback-header-wrapper"> <div class="container"> <div class="row"> <div class="col-md-12"> <button id="header-search-close-button" class="header-search-close-button float-right" type="button">X</button> </div> </div> <div class="row"> <div class="col-md-12"> <form> <input id="header-search-field" class="header-search-main-input" aria-label="Search This Site" placeholder="Search This Site" type="text" value="" name="query" id="txtKeywordMain" /> <input id="header-search-submit-button" class="header-search-main-submit" type="submit" value="Submit" /> </form> </div> </div> </div> </div> </nav> <div class="offset-div"></div> <!-- EMERGENCY NOTIFICATION SYSTEM (ENS) AREA --> <!--<div class="container" style="margin-top: 30px;"> <div class="alert alert-warning alert-dismissible fade show text-center" role="alert" style="z-index: 9;"> <i class="fa fa-exclamation-circle fa-lg fa-fw" aria-hidden="true"></i> Watch live as Governor-elect Matt Meyer and Lt. Governor-elect Kyle Evans Gay take their oaths of office and outline their visions for all Delawareans.<br /> Watch <a href="https://de.gov/live">here</a>.<br> <button type="button" class="close" data-dismiss="alert" aria-label="Close"> <span aria-hidden="true">×</span> </button> </div> </div> --> <!-- END EMERGENCY NOTIFICATION AREA --> <script type="text/Javascript"> $(document).ready(function() { // Close Icon in Right Slide Menu Nav Bar $('.panel-title').click(function() { $(this).find("i.fa").toggleClass("fa-arrow-right fa-arrow-down"); }); }); </script> <style type="text/css"> input.noshow { visibility: hidden; } formHeader { font-weight: bold; } .sDiv { visibility: visible; display: inline; } .hDiv { visibility: hidden; display: none; } </style> <!-- B E G I N M A I N C O N T E N T --> <div id="readSpeak_test"> <div data-swiftype-index='true'> <div id="overlay"></div> <div id="guideHeaderImage" style="background-image:url('https://delaware.gov/wp-content/uploads/sites/197/2021/07/header-resp-disclosure.jpg')"> </div> <div id="guides-interior"> <div id="guides-disclosurepage" role="main"><br /> <div class="container guide-interior-wrapper"><br /> <div class="row"> <div class="col-lg-12"> <h1 class="mainTitle"><strong>Responsible Disclosure</strong></h1> <hr class="short-left"><br /> <div id="readspeaker_button1" class="rs_skip rsbtn rs_preserve"> <a class="rsbtn_play" accesskey="L" title="Listen to this page using ReadSpeaker" href="//app-na.readspeaker.com/cgi-bin/rsent?customerid=7262&lang=en_us&readid=readSpeak_test&url=https://delaware.gov/responsible-disclosure/"> <span class="rsbtn_left rsimg rspart"> <span class="rsbtn_text"> <span>Listen</span> </span> </span> <span class="rsbtn_right rsimg rsplay rspart"></span> </a> </div><br /> <h3>Submission Date: <span class="text-success">Friday, February 21, 2025</span></h3> <hr class="blue"> <div class="clearfix"></div> <p>The State of Delaware takes security seriously. We invite the public to assist us in pro-active identification of web vulnerabilities, so that we can take active measures to resolve them.</p> <p>If you think you have found a vulnerability or security issue on a State of Delaware website, please include as much detail about this as you can in the below form.</p> <p>This form is not anonymous; as part of typical webform processing, your IP address will be sent when you submit this form. Email is an optional field, but we encourage you to include your email so that we can either gather more information to recreate the issue, or to let you know the steps we are taking.</p> <p>Please note: We ask that you do not share or publicize vulnerabilities submitted via this form.</p> <p><a href="https://dti.delaware.gov/pdfs/pp/Vulnerability%20Disclosure%20Policy.pdf" target="_blank">Read the Disclosure Policy from the Department of Technology and Information</a>.</p> <hr class="blue"> <div class="clearfix"></div><br /> <form method="post" enctype="multipart/form-data" name="vulnerability-response" id="vulnerability-response" action="https://smug.dti.delaware.gov/smu/mailer"> <h3><label for="form-vulnerability">Info</label> <span class="small text-successs">(required)</span></h3> <p>Help us get an idea of what this vulnerability is about:<br /><br /> <textarea cols="50" rows="5" name="form-vulnerability" id="form-vulnerability" class="form-control" placeholder="A summary of your submission" required></textarea> </p><br /> <h3><label for="form-Severity">Technical Severity</label></h3> <p> <select name="form-Severity" id="form-Severity" class="form-control"> <option>Please select</option> <option value="I don't know">I don't know</option> <option value="Server Security Misconfiguration">Server Security Misconfiguration</option> <option value="Server-Side Injection">Server-Side Injection</option> <option value="Broken Authentication and Session Management">Broken Authentication and Session Management</option> <option value="Sensitive Data Exposure">Sensitive Data Exposure</option> <option value="Cross-Site Scripting (XSS)">Cross-Site Scripting (XSS)</option> <option value="Broken Access Control (BAC)">Broken Access Control (BAC)</option> <option value="Cross-Site Request Forgery (CSRF)">Cross-Site Request Forgery (CSRF)</option> <option value="Application-Level Denial-of-Service (DoS)">Application-Level Denial-of-Service (DoS)</option> <option value="Unvalidated Redirects and Forwards">Unvalidated Redirects and Forwards</option> <option value="External Behavior">External Behavior</option> <option value="Insufficient Security Configurability">Insufficient Security Configurability</option> <option value="Using Components with Known Vulnerabilities">Using Components with Known Vulnerabilities</option> <option value="Insecure Data Storage">Insecure Data Storage</option> <option value="Lack of Binary Hardening">Lack of Binary Hardening</option> <option value="Insecure Data Transport">Insecure Data Transport</option> <option value="Insecure OS/Firmware">Insecure OS/Firmware</option> <option value="Broken Cryptography">Broken Cryptography</option> <option value="Privacy Concerns">Privacy Concerns</option> <option value="Network Security Misconfiguration">Network Security Misconfiguration</option> <option value="Mobile Security Misconfiguration">Mobile Security Misconfiguration</option> <option value="Client-Side Injection">Client-Side Injection</option> <option value="Other">Other</option> </select> </p> <br /> <h3> <label for="formVunerabilityDetails">Vulnerability Details</label> <span class="small text-danger">(required)</span> </h3> <p> <b>Describe the vulnerability, and provide a proof of concept. How would you fix it?</b><br> <p> URL / Location of Vulnerability<br /><br /> <input type="text" name="formVunerabilityDetails" id="formVunerabilityDetails" class="form-control" required> </p> <br /> <h3> <label for="formVulnerabilityDescription">Vulnerability Description</label> </h3> <p> <textarea cols="50" rows="5" name="formVulnerabilityDescription" id="formVulnerabilityDescription" class="form-control" placeholder="What is the vulnerability? What is security impact? Replication steps."></textarea> </p> <br /> <h3> <label for="formAdditional">Additional Information</label> </h3> <p> <textarea cols="50" rows="5" name="formAdditional" id="formAdditional" class="form-control" placeholder="Any additional information or data you'd like us to know about this submission?"></textarea> </p> <br /> <h3> <label for="formAddAttatchment">Add Attachment</label> </h3> <p> <input type="file" name="formAddAttatchment" id="formAddAttatchment"> </p> <br /> <h3> <label for="formEmail">Email <span class="small text-info">(optional)</span></label> </h3> <p>Your email address is optional, but we encourage you to include it so that we can either gather more information to recreate the issue, or to let you know the steps we are taking to resolve the vulnerability.</p> <p> <input type="text" name="formEmail" id="formEmail" class="form-control" placeholder="Your email address."> </p><br /> <!-- Do not remove or alter this section --> <div id="submit_buttons"> <input type="text" class="noshow" name="email" id="email" value="" aria-label="hidden email" aria-hidden="true"> <input type="text" class="noshow" name="mailfrom" id="mailfrom" value="" aria-label="hidden mail from" aria-hidden="true"> <input type="text" class="noshow" name="AGENCYUID" id="AGENCYUID" value="187847c5-4aa0-4102-9d0c-85561b00ee62" aria-label="hidden agency value" aria-hidden="true"> <input type="text" class="noshow" name="FORMUID" id="FORMUID" value="9eac906e-b0cd-4d3e-90ac-1fd51eaee601" aria-label="hidden form value" aria-hidden="true"> <input type="text" class="noshow" name="COMMAND" id="COMMAND" value="SENDMAIL" aria-label="hidden send" aria-hidden="true"> <button type="submit" class="btn-de-search-blue float-left" aria-label="Report Vulnerability">Report Vulnerability</button> </div> </form> <div class="clearfix"></div><br /> <p><small><span class="badge badge-dark badge-pill">Related Topics:</span> <a href="https://delaware.gov/tag/disclosure-policy/" rel="tag">disclosure policy</a>, <a href="https://delaware.gov/tag/responsible-disclosure/" rel="tag">responsible disclosure</a>, <a href="https://delaware.gov/tag/transparency/" rel="tag">transparency</a>, <a href="https://delaware.gov/tag/vulnerability/" rel="tag">vulnerability</a></small></p><br /> </div> </div> </div><br /><br /><br /><br /><br /><br /> </div> <!-- /guides-disclosurepage --> </div> <!-- /guides-interior --> </div> <!-- /swiftype div --> </div> <!-- E N D M A I N C O N T E N T --> <div id="feedback-button-area"><div class="center-block text-center"><a class="btn-de-feedback" data-toggle="collapse" href="#feedback" role="button" aria-expanded="false" aria-controls="feedback">Give Feedback <i class="fal fa-chevron-up fa-fw"></i></a></div></div> <!-- BEGIN FEEDBACK AREA --> <div id="feedback" class="collapse"> <div class="container"><br /> <h2>Delaware.gov Feedback</h2><br /> <hr class="short-left" /><br /> <script type="text/javascript" src="https://degovforms.formstack.com/forms/js.php/portal_feedback?nojquery=1&nojqueryui=1&nomodernizr=1&useDynamicRendering=true"></script><noscript><a href="https://degovforms.formstack.com/forms/portal_feedback" title="Online Form">Online Form - Portal Feedback Form</a></noscript><script type='text/javascript'>if (typeof $ == 'undefined' && jQuery){ $ = jQuery}</script> </div> </div></div> <!-- END FEEDBACK AREA --> <br /> <div class="scrolltop"> <div class="scroll icon"><i class="fal fa-angle-up fa-3x fa-fw"></i></div> </div> <!-- BEGIN FOOTER --> <div id="footer" role="contentinfo"> <div class="container"><br /> <h1 class="main_footer">Delaware's Government</h1> <hr /> <div class="row"> <div class="col-sm"> <p><a href="https://governor.delaware.gov">Delaware's Governor</a><br /> <a href="/state-directory">State Directory</a><br /> <a href="https://delaware.gov/guides/your-government/">Elected Officials</a><br /> <a href="https://legis.delaware.gov/">General Assembly</a><br /> <a href="https://courts.delaware.gov/">Delaware Courts</a><br /> <a href="https://dhr.delaware.gov/talent-management/employee-resources.shtml">State Employees</a><br /> <a href="https://delaware.gov/guides/municipalities/">Cities & Towns</a><br /> <a href="http://delcode.delaware.gov/">Delaware State Code</a><br /> <a href="http://regulations.delaware.gov/">State Regulations</a><br /> <a href="https://delaware.gov/phonedirectory/">Phone Directory</a></P> </div> <div class="col-sm"> <p><a href="PORTAL_GUIDES_DOMAIN/contact/">Contact Us</a><br /> <a href="https://publicmeetings.delaware.gov/">Public Meetings</a><br /> <a href="PORTAL_GUIDES_DOMAIN/guides/">Guides to Services</a><br /> <a href="PORTAL_GUIDES_DOMAIN/freedom-of-information-act/">FOIA</a><br /> <a href="https://delaware.gov/guides/transparency-resources/">Transparency</a><br /> <a href="https://www.choosehealthde.com/Health-Insurance-Marketplace">Choose Health DE</a><br /> <a href="https://delaware.gov/guides/tax-center/">Tax Center</a><br /> <a href="https://revenue.delaware.gov/online-filing/">Personal Income Tax</a><br /> <a href="PORTAL_GUIDES_DOMAIN/privacy-policy/">Privacy Policy</a><br /> <a href="https://news.delaware.gov/emergency-weather-information/">Weather & Travel</a></p> </div> <div class="col-sm"> <p> <a href="https://corp.delaware.gov/">Corporations</a><br /> <a href="https://corp.delaware.gov/paytaxes/">Franchise Tax</a><br /> <a href="https://tax.delaware.gov/">Gross Receipts Tax</a><br /> <a href="https://dorweb.revenue.delaware.gov/info/edionline.html">Withholding Tax</a><br /> <a href="https://delaware.gov/guides/subscribe/">E-mail / Text Alerts</a><br /> <a href="https://delaware.gov/guides/social-media/">Social Media</a><br /> <a href="PORTAL_GUIDES_DOMAIN/using-readspeaker-software/">Using Readspeaker</a><br /> <a href="PORTAL_GUIDES_DOMAIN/responsible-disclosure/">Responsible Disclosure</a><br /> <a href="https://accessibility.dti.delaware.gov/index.shtml?dc=accessibilityStatement">Accessibility Statement</a><br /> <a href="PORTAL_GUIDES_DOMAIN/accessibility-form/">Report an Accessibility Issue</a></p> </div> <div class="col-sm"> <img src="/img/clf4img/portal_footer_seal.png" alt="State Seal of Delaware" title="State Seal of Delaware" class="d-none d-sm-none d-md-none d-lg-block img-fluid" /> </div> </div><!-- /.row --> <hr /> <div class="row"> <div class="col-sm-7 col-md-4 col-lg-4"> <div class="social center-block"> <div class="social_facebook"> <a href="https://www.facebook.com/delaware.gov" target="_blank"><span class="wave_text">Delaware.gov's Facebook page</span><i class="fab fa-facebook-square fa-3x"></i></a> </div> <div class="social_twitter"> <a href="https://twitter.com/delaware_gov/" target="_blank"><span class="wave_text">Delaware.gov's Twitter feed</span><i class="fab fa-twitter-square fa-3x"></i></a> </div> <div class="social_flickr"> <a href="https://www.flickr.com/groups/delaware_gov/" target="_blank"><span class="wave_text">Photos from Flickr</span><i class="fab fa-flickr fa-3x"></i></a> </div> <div class="social_youtube"> <a href="https://www.youtube.com/user/DelawareGovernment" target="_blank"><span class="wave_text">Delaware.gov's Youtube Channel</span><i class="fab fa-youtube-square fa-3x"></i></a> </div> <div class="social_rss"> <a href="https://www.instagram.com/delaware_gov/" target="_blank"><span class="wave_text">Photos from Instagram</span><i class="fab fa-instagram fa-3x"></i></a> </div> </div><div class="clear"></div><br /> </div> <div class="col-sm-5 col-md-3 col-lg-3"> <div class="btn-group"> <a class="btn btn-light btn-lg decreaseFont" href="#"><span class="wave_text">Make Text Size Smaler</span><i class="fas fa-minus"></i></a> <a class="btn btn-light btn-lg resetFont" href="#"><span class="wave_text">Reset Text Size</span><i class="fas fa-font"></i></a> <a class="btn btn-light btn-lg increaseFont" href="#"><span class="wave_text">Make Text Size Bigger</span><i class="fas fa-plus"></i></a> </div><br /><br /> </div> <div class="col-sm-12 col-md-5 col-lg-5"> <img src="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/img/clf4img/gic_portal_footer_logo@2x.png" alt="Built by the Government Information Center (GIC)" class="footer_logo" /> <p>Built by the <a href="https://gic.delaware.gov">GIC</a><br /> ©MMXVIII <a href="https://delaware.gov">Delaware.gov</a></p> </div> </div> </div> </div> <!-- END FOOTER --> <script type="text/javascript" src="https://delaware.gov/wp-content/mu-plugins/js/gic_library_ready.js" id="gic-js-library-mu-plugin-js"></script> <script type="text/javascript" src="https://f1-na.readspeaker.com/script/7262/webReader/webReader.js?pids=wr&dload=DocReader.AutoAdd" id="readspeaker-js-js"></script> <script type="text/javascript" src="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/js/guides_ready.js" id="psc-agency-js-js"></script> <script type="text/javascript" src="https://delaware.gov/wp-content/themes/dosgic_GUIDES_theme/js/jquery.inview.min.js" id="inview-js-js"></script> <script type="text/javascript" src="https://www.google.com/recaptcha/api.js" id="google-captcha-js"></script> </body> </html>