Our commitment
As a cybersecurity firm, we practice what we advise our clients. We welcome vulnerability reports from security researchers and commit to reviewing them promptly, seriously, and without legal action against good-faith research.
How to report a vulnerability
- Email security@aegiscyber.gr with a description of the issue, reproduction steps, and potential impact.
- Do not access, modify, or delete third-party data.
- Allow us reasonable time to remediate before any public disclosure.
We respond within 72 hours and keep you informed until full resolution.
The security.txt file
Per RFC 9116, we publish a machine-readable security.txt file so researchers and automated tools can immediately locate our security contact details. It is intentionally plain text — as the standard requires:
Contact: mailto:security@aegiscyber.gr
Contact: mailto:vitorakis@aegiscyber.gr
Expires: 2027-12-31T23:59:59.000Z
Preferred-Languages: el, en
Canonical: https://aegiscyber.gr/.well-known/security.txt
Policy: https://aegiscyber.gr/security
Hiring: https://aegiscyber.gr/about
Contact: mailto:vitorakis@aegiscyber.gr
Expires: 2027-12-31T23:59:59.000Z
Preferred-Languages: el, en
Canonical: https://aegiscyber.gr/.well-known/security.txt
Policy: https://aegiscyber.gr/security
Hiring: https://aegiscyber.gr/about
Scope
This policy covers the aegiscyber.gr website and our email infrastructure. It does not cover client systems — those are governed by the respective contractual terms.
