# TimeGrid (GomyDev LLC) — vulnerability disclosure # https://www.rfc-editor.org/rfc/rfc9116 # # TimeGrid processes protected health information on behalf of home-care # agencies. Please report privately using the contact below rather than # opening a public issue or post. Contact: mailto:security@gomydev.com Expires: 2027-08-27T00:00:00.000Z Preferred-Languages: en Canonical: https://timegridworkforce.com/.well-known/security.txt Policy: https://timegridworkforce.com/security.html # What helps us act fast: the affected URL, endpoint or screen, the steps to # reproduce, and the impact you believe it has. # # Please do NOT include real patient data in a report. Redact it, or use # synthetic values. # # We acknowledge reports within 2 business days. Issues that expose patient # data, bypass authentication, or cross between agencies are worked # immediately, with a fix or mitigation targeted within 7 days. # # Good-faith research is covered by the safe-harbor terms in the policy above.