1. Our approach
Security is part of how we build - for our clients and for ourselves. If you believe you have found a vulnerability in the Manzoorify website or systems, we want to hear about it and will work with you to fix it.
2. How to report
Email hello@manzoorify.com with the subject “Security report” and include:
- a description of the issue and where it occurs;
- steps to reproduce it, with any proof-of-concept;
- the potential impact, as you understand it;
- how we can reach you for follow-up questions.
3. What to expect
- We will acknowledge your report and keep you updated while we investigate.
- We will fix confirmed issues as quickly as their severity requires.
- With your permission, we will credit you once the issue is resolved.
4. Guidelines
Please act in good faith:
- only test against systems you are allowed to, and avoid accessing or changing other people’s data;
- do not run denial-of-service, spam or social-engineering attacks;
- give us reasonable time to fix an issue before disclosing it publicly.
We will not pursue legal action against researchers who follow these guidelines and report in good faith.
5. security.txt
Our contact details are also published in the standard /.well-known/security.txt file.