Medium’s Bug Bounty Disclosure ProgramThe software security research community makes the web a better, safer place and we support their bug-hunting efforts with a bounty program.To report a vulnerability, please email us at [email protected].
Exclusions from bug bounty eligibility :/Self-XSS.Login/logout CSRF.CSRF configuration issue without exploitable proof of concept.Missing security headers which do not lead directly to a vulnerability.
Medium Username PolicyCreationMedium usernames are claimed on a first-come, first-served basis. A username can only be attached to one account at a time.Inactivity
Medium Terms of ServiceEffective: March 7, 2016These Terms of Service (“Terms”) are a contract between you and A Medium Corporation. They govern your use of Medium’s sites, services, mobile apps, products, and content (“Services”).
Medium RulesSome parts of the Internet lack rules. This isn’t one of them.Medium exists for people to share their opinions, thoughts, and ideas. People will inevitably write things other people don’t agree with. Sometimes this will enlighten. Other times it will frustrate.
Medium’s Guidelines for Law EnforcementThese guidelines are intended for law enforcement authorities seeking information about Medium accounts or users. If you’re not a law enforcement agent, your request for user data should be submitted through our User Happiness team ([email protected])…
Medium’s Trademark PolicyThis policy explains how Medium responds to allegations of unauthorized use of trademark-protected materials.
How we handle Do Not Track requests on MediumAt Medium, we take privacy very seriously. While there’s no consensus on how to best honor Do Not Track (“DNT”) requests in browsers, we’ve spent a lot of time thinking about this question, and want to help define a model of best practices for the…
Summary of Changes to Privacy Policy and Terms of ServiceWe’ve updated our Terms of Service and Privacy Policy as of April 10, 2014.We did so because we want to be respectful and transparent about your interactions with us.