How to report
Send a detailed description of the vulnerability, steps to reproduce, and your assessment of impact to the security contact email shown in your workspace admin settings. Do not include active exploit code.
If you have discovered a potential security vulnerability in Pyron Studio, we want to hear from you before it becomes public knowledge.
Send a detailed description of the vulnerability, steps to reproduce, and your assessment of impact to the security contact email shown in your workspace admin settings. Do not include active exploit code.
URL or endpoint affected, type of vulnerability (e.g. XSS, IDOR, auth bypass), steps to reproduce, proof of concept if applicable, and your suggested severity.
We will acknowledge receipt within 3 business days. We will investigate and provide a status update within 10 business days. We ask that you give us a reasonable window to investigate before public disclosure.
Do not access, modify or delete data belonging to other users. Do not perform denial-of-service testing. Do not publicly disclose the issue until we have had the opportunity to investigate and respond.
We appreciate responsible disclosure. If you choose, we will acknowledge your contribution publicly after the issue is resolved.