As a cybersecurity professional, I take the security of my infrastructure seriously. I value the input of independent security researchers and the broader infosec community. If you discover a vulnerability within this portfolio or its underlying infrastructure, I encourage you to report it responsibly.
I will not initiate legal action or file complaints against researchers who discover and report vulnerabilities in good faith, provided they adhere strictly to the guidelines outlined in this policy.
To ensure a mutually beneficial disclosure process, please adhere to the following:
The following targets are considered IN SCOPE:
webjothishanalyst.site/api/*Note: Vulnerabilities in third-party services (Vercel, Supabase backend infrastructure) should be reported directly to those vendors.
I will make a best-effort attempt to triage your report within 48 hours and provide an estimated timeline for a patch. Once patched, you will be credited in the site's changelog if you desire.
Please email your findings securely.