# RFC 9116 security.txt for dalili.com # Discovered by ethical security researchers at /.well-known/security.txt Contact: mailto:support@dalili.com Contact: https://dalili.com/contact # We treat any private vulnerability report seriously and respond # within 5 business days. Please include: # • affected URL / endpoint # • clear reproduction steps # • expected vs. observed behaviour # • any payload or PoC Preferred-Languages: ar, en Canonical: https://dalili.com/.well-known/security.txt # This file expires roughly one year from publication. We refresh it # on each major release; if the date below is in the past, please # still report — the contact addresses above remain valid. Expires: 2027-05-09T00:00:00.000Z # Out-of-scope (do not test in production): # • Denial-of-service / load testing # • Social engineering of staff or users # • Anything affecting other customers' data # Hall of Fame: we credit researchers who report responsibly — let # us know if you'd like public acknowledgement.