Security Contact

Use this page to report potential security vulnerabilities and to access information about our reporting channels, coordinated vulnerability disclosure policy, and other security-related resources.

Report a Potential Security Vulnerability

Use the form below to describe a potential security issue as clearly and structurally as possible. Please only submit information that is necessary for assessment, reproducibility, and follow-up questions.

Optional, but helpful if we need to contact you for clarification or coordination.
Please do not submit unnecessary personal data or unrelated sensitive information.

Additional Information

Information about how we handle incoming reports and recognitions can be found on our Hall of Fame page:

https://www.erminas.com/hall-of-fame/

Disclosure Policy

Our coordinated vulnerability disclosure policy describes expectations, reporting channels, and our general handling of incoming reports:

https://www.erminas.com/disclosure-policy/

Machine-Readable Security Information

Our machine-readable security contact information is published at the following location:

https://erminas.de/.well-known/security.txt

OpenPGP Keys

Public OpenPGP keys for encrypted communication are published here:

  • https://www.erminas.com/openpgp-key_psirt.asc
  • https://www.erminas.com/openpgp-key_csirt.asc

Notice

This page is intended exclusively for reporting potential security vulnerabilities and coordinating related disclosures. It does not replace general support, sales, or contact channels.