Vulnerability Disclosure Policy

Security and privacy of our customers are core to how we build Hiver. This page explains our stance on security testing, and how to report a vulnerability if you find one.

Our Default Stance on Security Testing

By default, Hiver does not authorize or condone active security testing of any of our products whether public-facing or private, and regardless of whether you’re a customer, a security researcher, or anyone else. This includes automated scanning, fuzzing, penetration testing, or any deliberate attempt to find vulnerabilities.

 

If you want to actively test a Hiver product, you must first request authorization see section “Want to Test Our Products?” below. Testing without prior written authorization from our security team is not permitted under this policy, is not protected by our safe harbor terms, and may violate our Terms of Service.

Found Something Without Testing?

If you’ve come across a suspected vulnerability incidentally not through active testing – please report it to security@hiverhq.com right away. Include:

  • What you found and where
  • What you were doing when you noticed it
  • Any evidence you have (screenshots, error messages, etc.)

 

You don’t need prior authorization to report something you found this way.

Want to Test Our Products?

If you’d like to actively test Hiver’s products including as part of security research or bug bounty participation, you must:

 

  1. Read our full Bug Bounty Program page, including scope, rules of engagement, and non-qualifying findings.
  2. Email security@hiverhq.com requesting authorization, before doing any testing. Tell us who you are, what you’d like to test, and confirm you’ve read and agree to the Bug Bounty Program rules.
  3. Wait for written confirmation from our security team. We’ll confirm scope, any test accounts/environment to use, and duration.
  4. Test only within what we’ve authorized, and only in line with the rules on the Bug Bounty Program page.

 

Any findings from authorized testing should also be reported to security@hiverhq.com, following the reporting requirements on the Bug Bounty page.

One Email, No Exceptions

security@hiverhq.com is the ONLY email Hiver Information Security monitor for security reports, disclosure discussions, and testing authorization requests.

 

Please do not contact Hiver employees, founders, or executives directly about a security report or a request to test – via email, LinkedIn, X/Twitter, or otherwise. These will not be reviewed, do not establish priority, and are not eligible for any recognition or reward.

Safe Harbor

Security research conducted with our prior written authorization, within the scope we’ve granted, and in accordance with the Bug Bounty Program’s rules of engagement, is authorized under this policy and we won’t pursue legal action against it.

 

Testing conducted without prior authorization is not covered by this safe harbor, even if the finding itself turns out to be valid and is reported responsibly afterward.

Contact

security@hiverhq.com – the only channel we monitor for security reports, disclosure, and testing authorization requests.

4.6 out of 5 star rating

based on 2,000+ reviews from

"G2, Capterra, and Chrome Web Store rating icons"
Security and compliance badges including ISO 27001 and AICPA SOC

Get Hiver's Chrome extension for Gmail to start your 7-day free trial!

Step 1

Add Hiver’s extension to your Gmail from the Chrome Webstore

Step 2

Log in to the extension to grant necessary permissions

Step 3

Enjoy your 7-day free trial of Hiver

Hiver logo

The modern AI-powered
customer service platform

Want Hiver, without the Gmail extension?

Try Hiver Omni. It runs right in your browser, with no extension to install.

gmail extension fallback
logo stripe

Thank you for your interest!

The web app is currently under development—we’ll notify you as soon as it’s live.

In the meantime, you can get started with your 7-day free trial by downloading our Gmail extension.

Hiver logo

The agentic customer
service platform

The agentic customer service platform

“Our clients choose us over competitors due to our speed and quality of communication. We couldn’t achieve this without Hiver”

"Nathan Strang of Flexport, Hiver customer"
Fin Brown

Project Manager

Getitmade@2x

Get in touch with us

Fill out the form and we’ll get back to you.

demo popup graphic

Get a personalized demo

Connect with our customer champion to explore how teams like you can leverage Hiver.

Excellent choice! 🎉 You're all set

An email with the session details is on its way to your inbox. We can’t wait to connect with you!

Meanwhile, here’s how you can learn more about Hiver:

You missed selecting
a time slot! 🗓️

No worries! You can choose a time below, and one of our experts will contact you shortly.