Responsible Disclosure

Last updated: August 2026

1. Introduction

We take the security of our website and client portal seriously. Despite our best efforts, a vulnerability can still slip through. If you find one, we would like to hear from you so we can fix it as quickly as possible.

2. How to report

Email your findings to info@onlinerevolution.nl with enough detail to reproduce the issue, such as the URL, the steps you took and a short description of the impact. The more we can reproduce, the faster we can resolve it.

3. What we ask of you

Report the issue as soon as you find it and do not share it with others until it is resolved. Do not exploit the vulnerability further than needed to demonstrate it, and do not access, change or delete data that is not yours. Please avoid actions that disrupt our service, such as denial-of-service attacks, spam or social engineering of our staff.

4. What we promise

We will confirm that we received your report and keep you updated on the resolution. We aim to respond within five working days. If you report a genuine issue in good faith and follow the guidelines above, we will not take legal action against you. If you would like, we are happy to credit you once the issue is fixed.

5. Scope

This policy covers our public website and the client portal at app.onlinerevolution.nl. Vulnerabilities in third-party platforms and tools that we use fall under the responsible disclosure policy of that provider.

6. Contact

Reach us at info@onlinerevolution.nl. Online Revolution is registered with the Dutch Chamber of Commerce under number 96480556, Willemsplein 21, 6811 KB Arnhem.