Skip to content

Security: 4thandBailey/bimi

Security

SECURITY.md

Security Policy

Our Commitment

4th and Bailey is an Enterprise IT Consulting firm that advises organizations on security posture, risk assessment, and governance. We hold ourselves to the same standards we recommend to our clients. If you discover a security vulnerability affecting our domain, infrastructure, or published assets, we want to know about it.

Supported Assets

Asset Scope
4thandbailey.com ✅ In scope
*.4thandbailey.com ✅ In scope
4nb.cloud ✅ In scope
GitHub repositories under 4thandBailey ✅ In scope
Third-party services we use ❌ Out of scope — report directly to the provider

Reporting a Vulnerability

Do not report security vulnerabilities through public GitHub issues.

Please report vulnerabilities via email:

📧 security@4thandbailey.com

Include the following in your report:

  • A clear description of the vulnerability
  • Steps to reproduce the issue
  • Potential impact in your assessment
  • Any relevant screenshots, logs, or proof-of-concept code
  • Your contact information for follow-up

Our Response Commitment

Milestone Target
Acknowledgement of receipt Within 2 business days
Initial assessment Within 5 business days
Resolution or remediation plan Within 30 days depending on severity
Notification to reporter Upon resolution

We will keep you informed throughout the process. We will not take legal action against researchers who report vulnerabilities responsibly and in good faith.

Responsible Disclosure

We ask that you:

  • Give us reasonable time to investigate and remediate before public disclosure
  • Avoid accessing, modifying, or deleting data that does not belong to you
  • Do not conduct denial of service testing
  • Do not conduct social engineering against our team or clients
  • Act in good faith

Recognition

We appreciate the security research community. Researchers who responsibly disclose valid vulnerabilities will be acknowledged with their permission.

Contact

Purpose Contact
Security vulnerability reporting security@4thandbailey.com
General security inquiries inquiries@4thandbailey.com
Active incident — call directly tel: (888) 305-5977

⚠️ If you are experiencing an active security incident, do not use email. Call us directly at (888) 305-5977.


4th and Bailey LLC · Houston, TX · www.4thandbailey.com

There aren't any published security advisories