We welcome good-faith reports of security issues on shdanegroup.com. Use this process so we can fix problems before they are exploited.
Email security@shdanegroup.com or use the contact form. Include the affected URL, a short description, and steps to reproduce. Do not include exploit payloads.
We aim to acknowledge reports within two business days and will follow up with status as we investigate.
Please keep the issue private until we have addressed it or agreed on a disclosure date.
This policy covers the public website and related services we operate. It is not a bug bounty. We do not authorize scanning, denial-of-service, social engineering, or access to customer data.