Security & Vulnerability Reporting
We take cybersecurity seriously. We welcome responsible security researchers to report findings directly to our engineering security team.
1. Our Commitment to Security
Black Raven Technologies enforces strict security hygiene across our custom software architectures, Educational ERP institutional deployments, and WordPress plugins. We adhere to OWASP Top 10 recommendations, automated static code analysis, and strict database query sanitization.
2. Responsible Disclosure Program
If you believe you have identified a security vulnerability in any of our software products or web properties, we encourage you to report it immediately. We practice coordinated vulnerability disclosure and will never pursue legal action against researchers acting in good faith under these guidelines.
3. Scope
- Educational ERP Core Software & Student Portals
- Official WordPress Plugins authored by Black Raven Technologies
- Public API endpoints and Webhook verification systems
4. Recognition & Hall of Fame
Security researchers who report qualifying vulnerabilities that lead to a verified patch will be publicly acknowledged on our Security Hall of Fame (with prior researcher consent).
PGP Public Encryption Key
For sensitive vulnerability disclosures, please encrypt your communication with our official PGP key:
-----BEGIN PGP PUBLIC KEY BLOCK----- Version: OpenPGP.js v4.10.10 Comment: Black Raven Technologies Security Team Public Key mQENBF+xyzABC...[BLACK RAVEN TECHNOLOGIES OFFICIAL ENCRYPTED KEY]... -----END PGP PUBLIC KEY BLOCK-----
Submit a Vulnerability Report
Reports are delivered directly and securely to the Black Raven Security Incident Response Team.