Vulnerability disclosure
We practice what we preach. If you believe you've found a security issue in any ShadowSee system, please report it responsibly.
How to report
Email info@shadowsee.com with the subject line “Security report”. Please include:
- A description of the issue and its potential impact
- Steps to reproduce, or a proof of concept
- Affected URLs, endpoints or components
- How you'd like to be credited, if at all
Our commitment
- We'll acknowledge your report and keep you updated as we investigate.
- We won't pursue legal action for good-faith research that follows this policy.
- We'll credit you once the issue is resolved, if you wish.
Please don't
- Access, modify or delete data that isn't yours
- Run denial-of-service, spam or social engineering tests
- Publicly disclose the issue before we've had a chance to fix it
