Security Policy
Responsible disclosure and safe reporting process.
If you discover a potential vulnerability, report it privately and we will review promptly. Do not attempt destructive testing, data exfiltration, or service disruption.
Contact
How to report
- Primary contact: contact@totalhomewireless.com
- Canonical file: /.well-known/security.txt
- Please include: affected URL, reproduction steps, impact summary, and proof-of-concept details.
Scope
Allowed testing boundaries
- In scope: publicly reachable THWS web properties and security misconfiguration findings.
- Out of scope: social engineering, physical attacks, denial-of-service attempts, and non-consensual scanning of third-party systems.
Response
Expected timeline
- Acknowledgment: within 3 business days.
- Triage target: within 7 business days.
- Status updates: at least every 14 days for confirmed issues until resolution.
Safe Harbor
Good-faith research
THWS supports good-faith security research that follows this policy and avoids privacy impact, service disruption, and data access beyond what is necessary to demonstrate the issue.