01How to report
If you believe you have found a vulnerability, contact us through the Contact page with enough detail to reproduce the issue. Please do not access or modify data that is not yours.
02What to expect
We acknowledge reports, investigate, and keep you informed of remediation. We ask for reasonable time to fix an issue before public disclosure.
03Scope
Testing must not disrupt the service or affect other users. Denial-of-service, spam, and social-engineering attacks are out of scope.