Skip to main content

Security Vulnerability Reporting

Written by Adriana Silva

Have you found a security issue on idealista?

If you have identified a vulnerability on our websites or apps, we want to hear about it. You can report it directly to:

To help us investigate it as quickly as possible, please include:

  • A clear description of the issue.

  • The exact steps required to reproduce it.

  • The potential impact of the vulnerability.

  • Screenshots or any other supporting evidence, if available.


Basic Guidelines

To ensure an effective collaboration, please:

  • Submit one report per vulnerability, unless multiple vulnerabilities need to be combined to demonstrate the overall impact.

  • Do not access other users' data or go beyond what is strictly necessary to demonstrate the issue.

  • Do not perform Denial of Service (DoS/DDoS) attacks or tests.

  • Do not use social engineering techniques such as phishing or impersonation.

  • Do not publicly disclose the vulnerability.


What happens after you report it?

Our Cybersecurity team will review your report and get back to you as soon as possible. We particularly value reports that explain not only what the issue is, but also why it represents a real security risk.

Did this answer your question?