Legal

Privacy Policy

Your privacy is important to us. This policy explains how we handle your data.

Last updated: February 2026
1. Introduction

WhiteHat NG (“we,” “our,” or “us”) is committed to protecting your privacy. This Privacy Policy explains how we collect, use, disclose, and safeguard your information when you visit our website or use our services.

2. Information We Collect

2.1 Information You Provide

We may collect information you voluntarily provide, including:

  • Contact information (email address, name) when submitting vulnerability reports
  • Technical details about vulnerabilities or security incidents you report
  • Communication records when you contact us

2.2 Automatically Collected Information

When you visit our website, we may automatically collect:

  • IP address and browser type
  • Pages visited and time spent on pages
  • Referring website addresses
  • Device information
3. How We Use Your Information

We use the information we collect to:

  • Process and respond to vulnerability reports and incident submissions
  • Coordinate with affected organizations regarding disclosed vulnerabilities
  • Improve our services and website functionality
  • Communicate with you about our services and advisories
  • Comply with legal obligations
4. Information Sharing

We may share your information with:

Affected Organizations

When processing vulnerability disclosures, we share necessary technical details with the affected organization to facilitate remediation.

Government Agencies

We may share information with relevant cybersecurity agencies (e.g., ngCERT) when required for incident coordination.

Legal Requirements

We may disclose information when required by law or to protect our rights and the safety of others.

5. Data Security

We implement appropriate technical and organizational measures to protect your information against unauthorized access, alteration, disclosure, or destruction. This includes:

Encryption of data in transit and at rest
Access controls and authentication measures
Regular security assessments
Secure data storage practices
6. Data Retention

We retain personal information for as long as necessary to fulfill the purposes for which it was collected, including to satisfy legal, regulatory, accounting, or reporting requirements. Vulnerability and incident reports may be retained indefinitely for historical and research purposes.

7. Your Rights

You have the right to:

  • Request access to your personal information
  • Request correction of inaccurate information
  • Request deletion of your information (subject to legal requirements)
  • Opt out of marketing communications
8. Cookies

Our website uses essential cookies for functionality and may use analytics cookies to understand how visitors use our site. You can control cookie settings through your browser preferences.

10. Changes to This Policy

We may update this Privacy Policy from time to time. We will notify you of any changes by posting the new Privacy Policy on this page and updating the “Last updated” date.

11. Contact Us

If you have questions about this Privacy Policy or our privacy practices, please contact us at:

Related Legal Documents

Review our complete terms and conditions

Terms of Service