IBM
- Type
- AI company
- Place
- United States — USA
- Last checked
- 2026-09-22
- Next check due
- 2027-03-21
Ways to reach them
- IBM PSIRT
- IBM on HackerOne
- IBM Safe Harbor Policy
- Homepage
- Responsible Technology / AI ethics principles (no frontier safety framework published)
What it does
AI Ethics Board plus a Responsible Technology function governing watsonx and Granite models; PSIRT handles security and, unusually, explicitly names AI vulnerabilities in scope.
Honest assessment
No public accounts found of AI-specific reports to IBM PSIRT. IBM's AI Ethics Board is well-documented in its governance publications but is an internal review body with no published external intake. The PSIRT route is professional and long-established; whether a pure model-behaviour finding survives triage there is untested in public.
Notes
psirt@us.ibm.com is the route, and you can cite that AI vulnerabilities are in its published scope. There is no channel to the AI Ethics Board. IBM is one of the few here offering both anonymous submission and a written safe harbour policy.