Support & Contact
Report a Security Vulnerability
Vulnerability disclosure program, safe harbor terms, and security contact.
Last Updated: July 26, 2026
Report a Security Vulnerability
Synaps takes security seriously. We encourage independent security researchers to responsibly disclose vulnerabilities.
1. Responsible Disclosure Policy
Researchers agree to:
- Allow us reasonable time (at least 30 days) to remediate vulnerabilities before public disclosure.
- Avoid accessing or modifying customer data.
- Refrain from performing denial of service (DoS) attacks or social engineering.
2. How to Report
Send vulnerability reports directly to novaecosystems@gmail.com. Include:
- Vulnerability type (e.g. CSRF, XSS, SSRF, Access Control).
- Step-by-step proof of concept (PoC).
- Affected API endpoint or URL.
3. Safe Harbor Commitments
Good-faith security research complying with this policy will be protected under full legal safe harbor, and will not be subject to civil litigation or law enforcement referral.