Skip to content

Security: QYVORA/.github

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

We take security seriously. If you discover a security vulnerability in any QYVORA project, please report it privately.

Do not open a public issue. Instead, send details to ops@qyvora.netlify.app.

We will acknowledge receipt within 48 hours and work with you to resolve the issue promptly.

Scope

  • Authentication and session management
  • CP token balance manipulation
  • Access control bypass
  • Data exposure through API endpoints
  • Cross-site scripting (XSS) and injection vulnerabilities

Thank you for helping keep QYVORA and its community safe.

There aren't any published security advisories