← Back to StreetSmart

Security

Responsible disclosure policy

Security Policy

About StreetSmart

StreetSmart is a not-for-profit resource dedicated to helping NYC renters make informed housing decisions. We are a free service with no ads, no premium tiers, and no monetization. Our mission is to make public housing data accessible to everyone.

We take security seriously and appreciate researchers who help us keep our users safe.

No Bug Bounty Program

As a not-for-profit organization, we do not have a bug bounty program and are unable to offer monetary rewards for security disclosures.

However, we deeply appreciate security researchers who take the time to responsibly disclose vulnerabilities. Your efforts help protect our users and improve our platform for everyone.

Report a Security Issue

Email Us

contact@streetsmart.inc

Please include "Security Disclosure" in your subject line.

Responsible Disclosure Guidelines

What to Include

  • Description of the vulnerability
  • Steps to reproduce the issue
  • Potential impact
  • Any suggestions for remediation (optional)

We Ask That You

  • Give us reasonable time to address the issue before public disclosure
  • Avoid accessing or modifying other users' data
  • Act in good faith to avoid privacy violations and service disruptions

Thank you for helping keep StreetSmart and our users safe. Your security disclosures are genuinely appreciated and help us build a more trustworthy platform for NYC renters.