Security

Sensoria Health welcomes reports of security vulnerabilities in our products and services.

If you believe you have found a security issue, please tell us.

Reporting a Security Issue

Email: security@sensoria.io

Please include:

  • A description of the issue and why you believe it is a security problem

  • The product, service or URL affected

  • Steps to reproduce it, and any proof-of-concept material

  • Your assessment of the impact

  • How you would like to be credited, if you would like to be credited

We will acknowledge your report within three business days and provide an assessment within ten business days of acknowledgement. We will keep you informed as we work on a fix, and we will tell you when the issue is resolved.

Scope

This policy covers:

  • The Sensoria Health cloud platform and its public API endpoints

  • Sensoria mobile applications

  • The Sensoria SDK

  • Sensoria websites

Testing Guidelines

We ask that you:

  • Make a good-faith effort to avoid accessing, modifying or deleting data belonging to others

  • Use only accounts you own or have explicit permission to test

  • Stop testing and report immediately if you encounter any patient or personal data

  • Avoid any action that would degrade service for other users — no denial-of-service testing, no large-scale automated scanning

  • Give us reasonable time to remediate before disclosing publicly

Please do not perform social engineering, physical testing, or attacks against our staff, offices or suppliers.

Our Commitment

If you follow this policy in good faith:

  • We will not pursue legal action against you in relation to your research

  • We will work with you to understand and resolve the issue promptly

  • We will credit you for the discovery if you would like us to

What This Is Not

Sensoria does not currently operate a paid bug bounty program.

Reports are handled under this policy on a good-faith basis.

Last Updated: September 10th, 2026