Security contact

Report a security concern

Please report suspected vulnerabilities, accidental exposure, authentication problems, or access-control failures privately to peter.tamas@wur.nl.

Do not include passwords, credentials, session cookies, identity tokens, private manuscripts, source documents, or another reviewer’s material in the initial report.

Helpful information

Where safe, include:

Do not test beyond what is required to identify and report the suspected problem.

Research boundary

A security report does not authorise additional testing.

Without prior written permission, do not perform:

Stop testing if private or sensitive information becomes visible and report the issue through the private contact route.

Current status

The current OS-ERIN service operator is Biometris, Wageningen University & Research.

The private application is exposed only through the reviewed HTTPS and SURF SRAM boundary for the current operator-validation account.

This bounded sign-in route does not establish: