Security
Responsible Disclosure Policy
How to report potential security vulnerabilities affecting AQPAY systems or this website.
Last updated: 22 July 2026
AQPAY LTD welcomes good-faith reports of security vulnerabilities that may affect aqpay.co.uk or related AQPAY systems under our control.
How to report
Email security@aqpay.co.uk with a clear description of the issue, steps to reproduce, potential impact and any supporting evidence. Do not include unnecessary personal data.
Please do
- Act in good faith and avoid privacy violations
- Give us a reasonable opportunity to investigate and remediate
- Limit testing to what is necessary to demonstrate the issue
Please do not
- Access, modify or delete data that is not yours
- Disrupt service availability or degrade performance
- Use social engineering against staff or partners
- Publicly disclose before we have had a reasonable chance to respond
Our response
We will acknowledge valid reports where practical, assess severity and prioritise remediation. This policy does not create a bounty programme unless separately announced.
Information Security Statement
AQPAY designs technology and operational processes with security, privacy and compliance considerations from the outset. Further detail is available on our Security & Compliance page.
