Logo

Vulnerability Disclosure Policy – MaxMySales (MaxMySales)

Effective Date: January 17, 2026

MaxMySales (MaxMySales) welcomes security research to improve our WhatsApp Business API & CRM platform. This policy outlines safe reporting guidelines for good-faith researchers.

Scope

In Scope:

  • MaxMySales.com
  • core.MaxMySales.com
  • API endpoints
  • Web app (excluding third-party like Meta APIs, Razorpay)

Out of Scope:

  • DDoS
  • Social engineering
  • Physical attacks
  • Known issues in third-parties
  • Low-impact like self-XSS

Reporting Guidelines

What We Don't Want

Response Times

MaxMySales Chat
🤖 MaxMySales Assistant
🤖 Hi! I'm powered by MaxMySales. How can I help you with MaxMySales?