Use this page to report potential security vulnerabilities and to access information about our reporting channels, coordinated vulnerability disclosure policy, and other security-related resources.
Use the form below to describe a potential security issue as clearly and structurally as possible. Please only submit information that is necessary for assessment, reproducibility, and follow-up questions.
Information about how we handle incoming reports and recognitions can be found on our Hall of Fame page:
Our coordinated vulnerability disclosure policy describes expectations, reporting channels, and our general handling of incoming reports:
Our machine-readable security contact information is published at the following location:
https://erminas.de/.well-known/security.txt
Public OpenPGP keys for encrypted communication are published here:
https://www.erminas.com/openpgp-key_psirt.aschttps://www.erminas.com/openpgp-key_csirt.ascThis page is intended exclusively for reporting potential security vulnerabilities and coordinating related disclosures. It does not replace general support, sales, or contact channels.