Trust
Security and responsible disclosure
A safe route for telling us about a weakness, and clear limits on what should be sent.
Reporting a suspected vulnerability
Write to us with a clear description of the issue, the page or address where you saw it, and the steps needed to observe it. Reports are read by LandShield staff and treated in confidence.
What not to include
Do not send customer records, personal data belonging to other people, passwords, session tokens, API keys or database contents. Redact anything that is not needed to show the issue. Never post details publicly before we have replied.
Please do not
Do not attempt to access, alter or delete data that is not yours, degrade the service, run automated attacks against the platform, or engage anyone at LandShield in social engineering.
Recognition and reward
LandShield does not operate a paid bug bounty programme. No payment is offered or implied for a report. We will acknowledge your report and tell you what happens with it.
Account concerns
If you believe your own account or your organisation's account has been misused, report it here as well so it can be looked at promptly.