Responsible disclosure policy
In the unlikely event that security issues are found within the OneWelcome Identity Platform, the responsible disclosure policy allows individuals to easily communicate their findings to Thales. This facilitates the further strengthening of the security of of the OneWelcome Identity Platform with minimal overhead.
To enable communication of the responsible disclosure policy, you must first enable it on the Features tab.
When enabled, the responsible disclosure policy for security issues is available on the /oauth/.well-known/security.txt
endpoint.
It is a good practice to enable this feature if you want security issues to be directly communicated with Thales.