Responsible Disclosure Policy
NOTEDWhat changed, in plain language
The only change is to the obfuscated email link code for the security contact address. The wording of the policy is identical. This is a technical/cosmetic update with no effect on consumers.
This change appears to be cosmetic (formatting, typos, or contact details).
Changelog
- ± CHANGEDSecurity contact email link code changed
The scrambled code behind the 'email protected' link for reporting security issues was updated. The visible text and the policy itself did not change. This is how the site hides the email address from spam bots, and it can change when the page is regenerated.
https://www.theatlantic.com/cdn-cgi/l/email-protection#e89b8d8b9d9a819c91a89c808d899c8489869c818bc68b8785
https://www.theatlantic.com/cdn-cgi/l/email-protection#7b081e180e09120f023b0f131e1a0f171a150f121855181416
Full text changes — 20260826_rev01 to 20260827_rev01
COLOUR MARKS THE SEVERITY OF A FLAGGED CLAUSE · + AND − MARK ADDED AND REMOVED
| 17 | 17 | · Spamming |
| 18 | 18 | |
| 19 | 19 | · Social engineering (including phishing) of Atlantic Media staff or contractors |
| 20 | 20 | |
| 21 | 21 | · Any physical attempts against Atlantic Media property or data centers |
| 22 | 22 | |
| 23 | While we currently do not have a formal vulnerability reporting system in place at this time, please reach out to [\[email protected\]](https://www.theatlantic.com/cdn-cgi/l/email-protection#e89b8d8b9d9a819c91a89c808d899c8489869c818bc68b8785) to report any critical issues you may discover. Thank you for helping keep The Atlantic and our users safe! | |
| 23 | While we currently do not have a formal vulnerability reporting system in place at this time, please reach out to [\[email protected\]](https://www.theatlantic.com/cdn-cgi/l/email-protection#7b081e180e09120f023b0f131e1a0f171a150f121855181416) to report any critical issues you may discover. Thank you for helping keep The Atlantic and our users safe! |