TakePublic™

Periodic reports

Form 10-K Form 10-Q Form 8-K Form NT 10-K and NT 10-Q Amendments

Ownership and governance

Form 3 Form 4 Form 5 Board approvals See all SEC filings
94.8
HIMS 10-Q / scored Read a drafted 10-Q Scored 94.8 / 100 against the document HIMS actually filed.
Read the draft →
All 125 benchmarked real filings
Tour the TakePublic platform →

Stay on time

Company calendar Deadline alerts Compliance health score Section 16 management

Draft and file

Books integration AI drafting with citations EDGAR filing Supported SEC forms

Review and evidence

Counsel workflow Board approvals Tamper-evident audit trail See all solutions
FREE
Your ticker See where you stand Health score and next deadlines (ET). No account.
Run a free scan →
Live report: AAPL
Tour the TakePublic platform →

Company team

CFOs Controllers Board directors

Professional firms

Law firms Securities attorneys Professional practice dashboard

Public companies

OTC-quoted companies NASDAQ-listed companies NYSE-listed companies Newly public companies See every seat
FREE
Your ticker See where you stand Health score and next deadlines (ET). No account.
Run a free scan →
Live report: AAPL
Tour the TakePublic platform →

SEC guides

SEC filing deadlines Accelerated filer status NT extensions Form 4 two-day rule

Research

Proof: rebuilt filings How TakePublic compares Workiva alternative Free compliance scan

Support

Help center All SEC guides How it works
94.8
HIMS 10-Q / scored Read a drafted 10-Q Scored 94.8 / 100 against the document HIMS actually filed.
Read the draft →
All 125 benchmarked real filings
Tour the TakePublic platform →
Pricing
Sign in Get started
SEC filings Solutions Who it serves Learn How we compare Pricing Proof Help center
Get started↗ Sign in
Home / Vulnerability disclosure

Vulnerability disclosure

Effective date
August 17, 2026
Applies to
Vulnerability reports about TakePublic
Contact
hello@takepublic.com
Version
Current

Contents

How to report01 Scope02 Out of scope and testing limits03 Safe harbor04 What to expect05

Security research helps TakePublic protect customer filing data, material non-public information, pre-release financials, and insider personal information.

How to report

Email security@takepublic.com. Do not open a public GitHub issue. Keep the report and supporting material confidential while we investigate.

Include the affected host, endpoint, or feature; the vulnerability type and expected impact; clear reproduction steps or a proof of concept; the date, time, and time zone of testing; relevant request and response details with secrets and personal data removed; whether you accessed or changed customer data; and your preferred contact information.

Do not include customer content, credentials, access tokens, or other sensitive data unless we ask for a secure transfer.

Scope

Reports may cover:

  • the customer application at app.takepublic.com;
  • the TakePublic API;
  • the takepublic.com marketing site and free scanner;
  • authentication, authorization, filing integrity, or data isolation issues in those systems.

Out of scope and testing limits

Third-party products and SEC EDGAR are outside our control. Report an issue in a third-party product to that provider unless the issue results from how TakePublic uses or configures it.

Do not use denial-of-service testing, social engineering, physical intrusion, spam, destructive testing, or automated scanning that degrades the Service. Use only the minimum access needed to demonstrate the issue. Stop testing and notify us immediately if you encounter customer data.

Safe harbor

TakePublic will not pursue legal action against good-faith security research that follows this policy, avoids privacy violations and service disruption, uses only the minimum access needed to demonstrate the issue, and gives us a reasonable opportunity to investigate before public disclosure. This safe harbor does not authorize activity prohibited by applicable law or by third parties.

What to expect

We will acknowledge a complete report within 2 business days and provide an initial status update within 7 calendar days. We will investigate in good faith, share material progress, and coordinate disclosure timing when a confirmed issue affects customers. Resolution time depends on severity, complexity, and third-party dependencies.

TakePublic does not currently operate a paid bug bounty program. We welcome responsible reports and may credit researchers when requested and appropriate.

Questions? Contact hello@takepublic.com.

TakePublic™

Follow your company's SEC filings, deadlines and insider activity in one place. We prepare Forms 3, 4 and 5, your counsel reviews them, the insider signs, and we file them on EDGAR.

Filings

Form 10-K Form 10-Q Form 8-K Form 4 Form NT 10-K All SEC filings

Product

Company calendar Section 16 AI drafting All solutions Pricing Security Changelog Trust Center System status Free compliance scan

Who it serves

CFOs Controllers Law firms Securities counsel Board directors All seats

Company

Proof Learn How we compare Help center Investors Terms Privacy Disclosures Subprocessors DMCA Refunds Accessibility Vulnerability disclosure SMS opt-in E-SIGN consent
Ask AI about TakePublic ChatGPTClaudePerplexity

TakePublic is a technology platform, not a law firm, broker-dealer, or auditor. Forms 3, 4 and 5 prepared in TakePublic file only after the reviewer the company designates, such as its securities counsel, signs off; any other filing prepared in TakePublic files only after a licensed securities attorney signs off.

(c) 2026 TakePublic. TakePublic™ is a trademark of TakePublic Inc. Compliance figures compare the drafting, consulting, and filing work that moves into TakePublic. Your securities counsel's review and your PCAOB audit are separate and never included.

We use Google Analytics to understand how visitors use this site. No personal information is sold. Privacy policy