Email security details to: security@kiskolabs.com
Send the report only to that address. Include description, steps to reproduce, potential impact, and a suggested fix when you have one.
- We will acknowledge receipt of your report.
- We will provide an initial assessment.
- We will keep you informed of our progress and resolution timeline.
- We will work with you to understand and resolve the issue.
- We will credit you for the discovery unless you prefer to remain anonymous.
- We will publish a security advisory after the vulnerability is patched.
- We will coordinate public disclosure with you.
- Keep production credentials, API keys, and personal data out of prompts sent to third-party models or automation services.
- Verify automated dependencies.