Email [email protected] with the affected service, vulnerability type, reproduction steps, observed impact and any minimal proof needed to demonstrate the issue. Include a safe contact method and whether you want public recognition.
Do not include personal information, credentials or customer records unless strictly necessary. If sensitive material is unavoidable, ask us to agree on a safer transfer method before sending it. Report promptly and keep the issue private while we investigate.
Response commitment
Vericode acknowledges reports on a best-effort basis and will keep you updated as the investigation progresses. Recognition—a public thank-you, with your permission—is offered in place of a bounty program at this stage.