We highly value the security of user data and systems. We appreciate security researchers helping us maintain a secure environment.
Responsible Vulnerability Disclosure
We are committed to working with the security community to identify and fix vulnerabilities in our products. We encourage responsible disclosure and offer “Safe Harbor” protection to you.
How to Submit a Vulnerability Report
Please submit your report through one of the following methods and provide as much detail as possible:
1. On the “Contact Us” page, fill in your information.
2. Email: [email protected]
What the Report Should Include
- Affected assets and the type of vulnerability.
- Detailed steps to reproduce (screenshots or videos are preferred).
- Proof of Concept (PoC) code.
- Potential impact assessment.
- Your contact information (for follow-up communication).
Our Commitment
- Acknowledge receipt of your report within 24 hours.
- Provide preliminary assessment results within 5 business days.
- Keep you informed of the remediation progress promptly.
- After the fix is implemented, if you agree, we will publicly thank you for your contribution on our news page.
“Safe Harbor” Commitment
As long as you adhere to the provisions of this policy, comply with applicable laws during security research, and act in good faith to avoid privacy breaches, data leaks, and service disruptions, we will not initiate civil or criminal proceedings against you.
Acknowledgements
We greatly appreciate the security researchers who help us. Although we currently do not have a formal cash reward program, we extend our sincere gratitude to researchers who report valid vulnerabilities.
General Feedback
For non-security-related product feedback or technical support, please contact our customer service team through the following methods:
Service Phone : +49 721 5099 1000