# Cadre Technologies security contact (RFC 9116). # # CAD-P13. This file answered 404 before the rebuild shipped it, and "where do I # report a vulnerability in your website" is a recurring line item on enterprise # security questionnaires. # # RENEW THIS FILE BEFORE THE Expires DATE BELOW. RFC 9116 section 2.5.5 makes # Expires mandatory and says a parser MUST treat an expired file as stale, so a # lapsed date is worse than no file: it reads as an abandoned contact. Set one # year out on 2026-09-17; bump it, and re-confirm the mailbox is still monitored, # by 2027-09-17. # # Contact is the Libra Software Group security mailbox rather than a Cadre alias: # the cadretech.com addresses in this repo are sales, info, marketing and hr, and # a vulnerability report sitting in a sales inbox is a report nobody reads. Contact: mailto:security@librasoftwaregroup.com Expires: 2027-09-17T00:00:00.000Z Preferred-Languages: en Canonical: https://www.cadretech.com/.well-known/security.txt