Pyronpyronstudio.Open Studio
RESPONSIBLE DISCLOSURE

Report a security issue privately.

If you have discovered a potential security vulnerability in Pyron Studio, we want to hear from you before it becomes public knowledge.

How to report

Send a detailed description of the vulnerability, steps to reproduce, and your assessment of impact to the security contact email shown in your workspace admin settings. Do not include active exploit code.

What to include

URL or endpoint affected, type of vulnerability (e.g. XSS, IDOR, auth bypass), steps to reproduce, proof of concept if applicable, and your suggested severity.

Our commitment

We will acknowledge receipt within 3 business days. We will investigate and provide a status update within 10 business days. We ask that you give us a reasonable window to investigate before public disclosure.

What we ask of you

Do not access, modify or delete data belonging to other users. Do not perform denial-of-service testing. Do not publicly disclose the issue until we have had the opportunity to investigate and respond.

Recognition

We appreciate responsible disclosure. If you choose, we will acknowledge your contribution publicly after the issue is resolved.

View security overview