Official site administered by MIR Imagen
Español
Official security information

Portal security and legitimacy policy

This page officially identifies the owner and technology administrator of the domains used for the procurement, bidding, and supplier management portal.

Legitimacy statement

MIR Imagen is the legitimate owner, creator, developer, and authorized technology administrator of licitacionesonline.com and lictacionescch.com.

The domain lictacionescch.com is an official, authorized, and intentional domain. It is not a typographical imitation, phishing website, impersonation attempt, or unauthorized copy of another website.

Current domain

lictacionescch.com

Official and authorized

Domain currently used for the platform and its procurement and supplier management modules.

Visit current portal
Previous domain

licitacionesonline.com

Official and authorized

Original portal domain, currently used as the source of a temporary redirection.

Visit previous domain

Temporary redirection due to technology upgrade

As part of a technology upgrade, the application is being adapted and migrated to a newer version of PHP.

For compatibility and business continuity reasons, traffic from licitacionesonline.com is being temporarily redirected to lictacionescch.com.

This transition is expected to last approximately one year while the migration, compatibility testing, module upgrades, and full platform validation are completed.

The redirection between both domains is legitimate, authorized by MIR Imagen, and part of the official system upgrade process.

Platform purpose

The domains identified on this page are part of a private platform used to manage:

Access to certain areas of the portal may require authentication using previously assigned credentials.

Security controls and practices

MIR Imagen maintains technical and administrative controls intended to protect the platform and the information it processes.

Responsible vulnerability reporting

If you discover a possible vulnerability or suspicious behavior related to these domains, please report it responsibly.

Security contact

Email: [email protected]

Send report

Information to include in the report

  1. The exact URL or module where the issue was identified.
  2. A clear description of the observed behavior.
  3. Approximate date and time of detection.
  4. Steps required to reproduce the issue.
  5. Screenshots or technical evidence, when possible.
  6. Contact information so that additional details may be requested.

Information that should not be sent

Guidelines for security researchers

Researchers are requested to act in good faith and limit testing to what is strictly necessary to document a potential vulnerability.

security.txt file

Official technical information for vulnerability reporting is also published in the standard security.txt file.

https://www.lictacionescch.com/security.txt

Communication verification

Before providing credentials, documents, or sensitive information, users should confirm that they are visiting one of the official domains identified on this page.

MIR Imagen will not request passwords through unauthorized messages or ask users to enter their credentials on domains other than those officially declared.

Any website, email, or message using a similar name but directing users to a different domain should be reported to the security contact.

Updates to this information

This page may be updated when domains, contact information, security controls, or technology migration conditions change.

Last updated: July 18, 2026.