Follett Software Security Champions

Protecting Our Community Together

At Follett, we prioritize the security and integrity of our educational technology solutions. We recognize the vital role that independent security researchers play in identifying and mitigating potential vulnerabilities, ensuring data protection for students, educators, and institutions.

 

Middle-adult female Caucasian mentor supervisor help male african intern explain computer work corporate software. Businesswoman instruct trainee new worker teaching giving advice at workplace.

Our Commitment to Security

We handle every reported vulnerability with the utmost seriousness, striving to address each one swiftly and effectively. By working hand in hand with the security community, we ensure our platforms remain secure and reliable.

Follett Values

We are dedicated to protecting our customers’ data, and this commitment extends to collaborating with external security researchers who share our dedication to security and integrity.

Join Our Security Champions

If you have the skills to identify security vulnerabilities, report them responsibly. Your contributions help us maintain a safe and secure environment for all users.

How to Report a Vulnerability

To report a potential security issue with a Follett product or technology, please submit our vulnerability submission form or email us at [email protected] with the following details:

  • Product or technology name
  • Potential impact of the vulnerability
  • Detailed description of the vulnerability, including reproducible steps
  • A working proof of concept
  • Ensure that all submissions containing sensitive information are encrypted. If you need assistance with the encryption process, contact us for support.

Our Process

Upon receiving a report, our security team will:

  • Acknowledge receipt promptly.
  • Provide an estimated timeframe for addressing the reported issue.
  • Notify you once the vulnerability is fixed.

By submitting a vulnerability, you agree to:

  • Allow Follett reasonable time to assess and remedy the issue.
  • Keep the reported vulnerability confidential until it is resolved.
  • Not disclose the vulnerability to third parties.

Security Researcher Recognition

We value every researcher who reports a vulnerability. While we do not offer monetary rewards, we highlight significant contributions by featuring researchers on our Follett Software Security Champions page.

By submitting a potential security issue, you grant Follett the right to display your name and recognize your efforts. Thank you for helping us improve the security of our solutions. Together, we can create a safer digital environment for everyone.

Recognizing Excellence in Security

We proudly acknowledge the efforts of security researchers who have responsibly reported potential issues. Your integrity helps us safeguard sensitive data and maintain the trust of our users.

Hall of Fame

  • Ashar Ahmed – June 13, 2024
  • Dylan Davis, Secruin Inc. – July 1, 2024
  • River Wynne & Lucas Benesh – February 5, 2025
  • Jared DeWitt – April 3, 2025

We extend our heartfelt thanks to these individuals for their honesty and integrity in reporting issues directly to us.

Let’s Get Started

Ready to make every resource work harder for your district? Let's partner to create a system that's right for you.

Contact Us