“poorly tested bug reporting interfaces and requiring legal agreements to report vulnerabilities have come up multiple times, and led to delays of Project Zero reporting”

Link. Samsung’s bug reporting disastrous. Many vendors try to prevent disclosure. Apple not mentioned.