As digital platforms become increasingly connected to how businesses interact with their customers, maintaining strong security is no longer a one-time effort. It requires continuous attention, testing and responsible collaboration.
Samparka, a Nepal-based digital loyalty and customer engagement platform, has launched a Vulnerability Disclosure Program (VDP) on Bugv, creating a structured channel for security researchers and ethical hackers to responsibly report potential security vulnerabilities in its platform.
About Samparka
Samparka helps businesses build and manage digital loyalty programs while strengthening customer engagement and retention. Through technologies such as QR and NFC, the platform enables businesses to create digital loyalty experiences while gaining insights into customer interactions and engagement.
As Samparka continues to expand its platform and serve businesses across different markets, the security of the systems and data supporting these experiences becomes increasingly important.
A Proactive Approach to Platform Security
Modern digital platforms can contain complex interactions between applications, users, APIs and data. Vulnerabilities can sometimes remain unnoticed even when security is treated as a priority.
Samparka’s VDP provides a structured way for security researchers to report potential vulnerabilities they discover in its systems.
Rather than waiting for a vulnerability to become a real-world security incident, a disclosure program allows organizations to receive responsible reports from the security community and investigate potential weaknesses through an established process.
What Is a Vulnerability Disclosure Program?
A Vulnerability Disclosure Program provides security researchers with a clear and responsible way to report security vulnerabilities they discover in an organization’s systems.
Through a VDP, researchers can:
- Identify potential security vulnerabilities
- Report them through a defined disclosure channel
- Provide technical information to help the organization investigate
- Allow the organization to validate and address the reported issue
For organizations, this creates a more structured approach to receiving vulnerability reports and working with the security community.
Unlike a bug bounty program, a VDP does not necessarily offer financial rewards for vulnerability reports. Its primary purpose is to establish a clear and responsible process for reporting and addressing security issues.
Why Responsible Disclosure Matters
Security researchers play an important role in identifying weaknesses that may otherwise go unnoticed.
By opening a responsible disclosure channel, Samparka is making it easier for researchers to communicate potential security concerns directly with the organization.
This approach can help organizations:
Discover
Identify potential vulnerabilities through independent security research.
Respond
Receive vulnerability reports through a defined and responsible process.
Improve
Use security findings to strengthen systems and reduce potential risks over time.
Samparka and Bugv
Through Bugv, Samparka has established a dedicated platform for receiving and managing vulnerability disclosures from security researchers.
Bugv provides the infrastructure for organizations and security researchers to collaborate around responsible vulnerability disclosure, helping create a more transparent and structured security process.
For Samparka, the VDP represents another step toward making security an ongoing part of its technology and platform development.
Building a More Secure Digital Ecosystem
As businesses increasingly depend on digital platforms to manage customer relationships and experiences, security becomes a shared responsibility.
Samparka’s Vulnerability Disclosure Program opens a direct channel between the organization and the security research community, encouraging responsible reporting and continuous improvement.
The program is now available through Bugv for security researchers who identify potential vulnerabilities within the defined scope.
Have you discovered a potential vulnerability in Samparka?
Visit the Samparka Vulnerability Disclosure Program on Bugv to review the program guidelines and submit a responsible report.





