Skip to main content
  1. Securities/

Security Policy

·327 words·2 mins
Hardik Mehta
Author
Hardik Mehta
A visionary software architect with a passion for solving real-world problems.

Security Policy
#

Reporting Security Vulnerabilities
#

We take security vulnerabilities seriously and appreciate responsible disclosure. If you discover a security vulnerability in our website or services, please report it to us privately.

Contact Information
#

What to Include in Your Report
#

When reporting a security vulnerability, please include:

  1. Description: A clear description of the vulnerability
  2. Steps to Reproduce: Detailed steps to reproduce the issue
  3. Impact: Potential impact and severity assessment
  4. Proof of Concept: If applicable, provide a proof of concept (without causing harm)
  5. Environment: Browser version, operating system, and other relevant details

Our Commitment
#

When you report a security vulnerability to us, we commit to:

  • Acknowledge your report within 48 hours
  • Investigate the issue promptly
  • Communicate regularly about our progress
  • Credit you for the discovery (if you wish)
  • Fix the vulnerability as quickly as possible

Responsible Disclosure Guidelines
#

To ensure responsible disclosure:

  • Do not access, modify, or delete data that doesn’t belong to you
  • Do not perform actions that could harm our services or users
  • Do not publicly disclose the vulnerability until we’ve had time to address it
  • Do give us reasonable time to investigate and fix the issue
  • Do provide sufficient information for us to reproduce the vulnerability

Scope
#

This security policy applies to:

  • Our main website: hardikmehta.net
  • Associated subdomains and services
  • Public-facing applications and APIs

Out of Scope
#

The following are generally out of scope:

  • Social engineering attacks
  • Physical attacks against our infrastructure
  • Denial of Service (DoS) attacks
  • Spam or content injection without security impact
  • Issues requiring physical access to devices

Recognition
#

We maintain a security acknowledgments page to recognize security researchers who have helped improve our security.

Legal#

We will not pursue legal action against researchers who:

  • Follow this responsible disclosure policy
  • Act in good faith
  • Do not violate any laws or breach any agreements

Questions?
#

If you have questions about this security policy, please contact us at [email protected].