Security program
Bug Bounty
We reward security researchers who responsibly disclose vulnerabilities in MiCamp products. If you have found something, we want to hear about it.
Scope
The program covers the products documented on this site and their public APIs:
- WAVit — merchant app, public API, and payment processing
- MiPaymentChoice — gateway API, virtual terminal, hosted pages
- CloudPay — transaction processing and merchant portal
- MiDashboard ERP and MiStorage web applications and APIs
How to report
Email a detailed report to security@micamp.com including reproduction steps, affected endpoints or pages, and the impact you believe the issue has. We will acknowledge reports within two business days.
Safe harbor
Research conducted in good faith and within scope will not result in legal action. Do not access customer data, degrade service, or test against production payment flows.