We recognize the important role of security researchers in helping keep our community safe. You can disclose security vulnerabilities to Newton described on this page.
ճԹϺ. believes effective disclosure of security vulnerabilities requires mutual trust, respect, transparency and common good between ճԹϺ. and Security Researchers. Together, our vigilant expertise promotes the continued security and privacy of ճԹϺ. customers, products, and services.
ճԹϺ. accepts vulnerability reports from all sources such as independent security researchers, industry partners, vendors, customers and consultants. ճԹϺ. defines a security vulnerability as an unintended weakness or exposure that could be used to compromise the integrity, availability or confidentiality of our products and services.
This policy applies to any digital assets owned, operated, or maintained by ճԹϺ., including public facing websites.
ճԹϺ. recommends that security researchers share the details of any suspected vulnerabilities across any asset owned, controlled, or operated by ճԹϺ. (or that would reasonably impact the security of ճԹϺ. and our users) using the web form below. The ճԹϺ. Security team will acknowledge receipt of each vulnerability report, conduct a thorough investigation, and then take appropriate action for resolution.
To submit a vulnerability, please send an email to bounties@newton.co. Please try to be as descriptive as possible including steps to reproduce the vulnerability and the impact of the vulnerability.