Security
Report a vulnerability
We welcome responsible reports that help protect Vector Ridge members and systems.
Contact
Email security@vector-ridge.com. Include the affected URL or component, clear reproduction steps, impact, and any supporting screenshots or request details.
Do not include live credentials, personal data, or sensitive market information in the initial message. We will arrange a safer transfer method if needed.
Responsible testing guidelines
- Use only accounts and data you own or have explicit permission to test.
- Do not access, change, retain, or disclose another person’s data.
- Do not disrupt availability, send spam, perform denial-of-service testing, or use automated high-volume scanning.
- Stop and report immediately if testing exposes credentials, private data, or internal-only material.
- Allow us reasonable time to investigate and remediate before public disclosure.
What to expect
We will acknowledge actionable reports, investigate them in good faith, and keep reporters informed when practical. This policy does not promise a monetary reward or authorize testing that violates applicable law.
Machine-readable policy: security.txt