Responsbile Disclosure Policy | Nucleus Software

Transforming Digital Lending for Your Financial Institutions

Compare Versions

Compare World-class, Industry-defining Features Today.

Learn more
FinnOne Neo® CAS

Robust Digital Lending for Superior Loan Origination Journeys.

Learn more
FinnOne Neo® LMS

Unlock Efficiency in Loan Servicing for Enhanced Customer Experience

Learn more
FinnOne Neo® Collections

Simplified and Intelligent Debt Collection Platform

Learn more

Streamlining Transaction Banking for Corporates.

FinnAxia® FSCM

Unlock Working Capital, Strengthen Relationships, Fuel Business Growth

Learn more
FinnAxia® Global Receivables

Simplify Collections. Strengthen Liquidity. Scale Confidently.

Learn more

An advanced technology platform, designed to deliver agile and efficient solutions while drastically reducing the cost of operations.

Gold Lending

Manage the complete gold loan lifecycle through a single digital platform.

Learn more
Corporate Lending

Enhanced Agility via Digitizing SME and Corporate Lending.

Learn more
Retail Lending

End-to-end digital lending across the entire lifecycle of origination, servicing & collections.

Learn more
Islamic Finance

Interest Free Banking Governed by Shariah Principles.

Learn more
Automotive Lending

Advanced Automotive Lending Software for complete loan life cycle management.

Learn more

Digital Transaction Banking suite that is modular for a composable banking experience.

Integrated Transaction Banking Suite – FinnAxia®

FinnAxia®, End-to-end Global Transaction Banking Suite; optimally manages Receivables, Payments, Liquidity, Financial Supply Chains and Corporate Trade.

Learn more

Ensure responsible Lending with our API-backed products for easy & seamless connectivity to the financial ecosystem.

FinnOne Neo® mFin

Easy, fast and digitized access to microcredit, anytime, anywhere.

Learn more
Payse®

An offline and online digital cash solution designed to democratize finance.

Learn more

Modern Technology Platform to Engage and Empower Customers.

Nucleus Software Logoclose

Responsible Disclosure

At Nucleus Software, security is fundamental to the trust our customers, partners, and stakeholders place in us. We are committed to protecting the confidentiality, integrity, and availability of our digital assets, applications, and services.

We welcome reports from security researchers, customers, partners, and members of the public who identify potential security vulnerabilities in systems owned and operated by Nucleus Software. Responsible disclosure helps us strengthen our security posture and better protect the organizations that rely on our solutions.

If you believe you have discovered a security vulnerability, we encourage you to report it responsibly using the process outlined below.

Reporting a Security Vulnerability

If you identify a potential security vulnerability affecting a Nucleus Software website, application, service, or digital asset, please report it by emailing:

Security Contact: teamcyberandinfosec@nucleussoftware.com

To help us investigate your report efficiently, please include:

We will review all reports and investigate validated security concerns in accordance with our internal security processes.

Scope

This Responsible Disclosure Program applies to systems and services owned and operated by Nucleus Software, including:

Product Security Reporting

Nucleus Software provides technology solutions to banks, financial institutions, and enterprises globally, including products such as FinnOne Neo® and FinnAxia®.

If you believe you have identified a vulnerability affecting a Nucleus Software product deployment, please report the issue to us with complete details. We will coordinate the investigation and remediation process with the appropriate stakeholders and affected parties, where applicable.

Out of Scope

The following activities and findings are generally considered outside the scope of this Responsible Disclosure Program:

Guidelines for Security Researchers

We request that all security research be conducted responsibly and in good faith.

When reporting vulnerabilities, please:

Please Do Not

Our Commitment

When a vulnerability report is submitted in accordance with this Responsible Disclosure statement, Nucleus Software will:

Safe Harbour

Nucleus Software supports responsible security research conducted in good faith.

We will not initiate legal action against individuals who:

Activities that violate applicable laws, compromise customer data, disrupt services, or cause harm to Nucleus Software, its customers, partners, or third parties are not covered under this Safe Harbour statement.

Contact Information

Security Vulnerability Reporting – teamcyberandinfosec@nucleussoftware.com

Thank you for helping us maintain a secure and resilient digital environment for our customers, partners, and stakeholders.