Security & Responsible Disclosure
We welcome good-faith reports that help protect our website and users. This page does not authorize security testing.
How to report
Email admin@sistematiko.tech with the affected page, issue type, reproducible steps, potential impact, and minimal proof needed to verify the issue. Do not include personal data or secrets in ordinary email. We will acknowledge and prioritize reports according to risk.
Do not
Do not access, modify, download, retain, or disclose data that is not yours; perform denial-of-service or high-volume automated testing; use malware or social engineering; disrupt users; test third-party systems; demand payment; or publicly disclose an unresolved issue. Stop immediately if you encounter personal or confidential data.
Our approach
We will investigate credible reports, work toward proportionate remediation, and communicate when practical. We do not promise rewards or immunity. Activity outside written authorization may violate our Terms and Philippine law, including the Cybercrime Prevention Act of 2012.
Personal data breaches
If a report involves personal data, we will assess containment and notification obligations under the Data Privacy Act, its IRR, and applicable NPC rules. Individuals who believe their data was misused may contact us under the Privacy Notice.