Security Policy
How to report security vulnerabilities
Responsible Disclosure
We take security seriously and appreciate the efforts of security researchers who help us maintain a secure platform. If you discover a security vulnerability, we encourage you to report it to us responsibly.
How to Report
Email: security@www.nextutils.com
Response Time: We aim to respond within 48 hours
Encryption: Please use PGP encryption if possible
What to Include
- Detailed description of the vulnerability
- Steps to reproduce the issue
- Potential impact assessment
- Suggested fix (if applicable)
- Your contact information
What We Promise
- Timely response and acknowledgment
- Thorough investigation of reported issues
- Regular updates on progress
- Credit in our security acknowledgments
- No legal action against responsible disclosure
Out of Scope
- Social engineering attacks
- Physical security issues
- Third-party service vulnerabilities
- Denial of service attacks
- Spam or phishing attempts