🔒 Lucky Jaya Group Security Policy

Selamat datang di halaman Kebijakan Keamanan Lucky Jaya Group. Kami berkomitmen untuk menjaga keamanan sistem dan data kami, serta menghargai kontribusi komunitas security dalam menjaga keamanan digital.

📞 Contact Information

Security Team: security@luckyjayagroup.com
Response Time: 24-48 jam untuk vulnerability reports
Preferred Languages: Bahasa Indonesia, English
PGP Key: Download PGP Key

🎯 Scope

In Scope:

Out of Scope:

💰 Bug Bounty Program

Reward Structure:

Rewards akan diberikan berdasarkan severity dan impact assessment.

📋 Rules & Guidelines

Do's:

Don'ts:

🔄 Process

  1. Discovery: Anda menemukan vulnerability
  2. Report: Kirim ke security@luckyjayagroup.com dengan detail lengkap
  3. Validation: Tim kami akan memverifikasi dalam 24-48 jam
  4. Fix: Kami akan memperbaiki vulnerability
  5. Reward: Anda menerima reward sesuai severity
  6. Disclosure: Vulnerability akan dipublikasikan setelah fix

📊 Vulnerability Classification

Severity CVSS Score Description
Critical 9.0-10.0 Remote code execution, data breach, system compromise
High 7.0-8.9 Authentication bypass, SQL injection, XSS
Medium 4.0-6.9 Information disclosure, CSRF, insecure configurations
Low 0.1-3.9 Minor issues, best practice violations

🔐 Legal

This security policy is governed by applicable laws and regulations. All security research activities must comply with: