# Security Contact Information # https://securitytxt.org/ Contact: mailto:security@qryptsafe.com Contact: https://qryptsafe.com/security Expires: 2026-12-31T23:59:59.000Z Encryption: https://qryptsafe.com/pgp-key.txt Preferred-Languages: en, de, fr Canonical: https://qryptsafe.com/.well-known/security.txt # Security Policy Policy: https://qryptsafe.com/security-policy # Acknowledgments Acknowledgments: https://qryptsafe.com/security-acknowledgments # Hiring Hiring: https://qryptsafe.com/careers # About Our Security # QryptSafe uses NIST-standardized ML-KEM (FIPS-203) post-quantum cryptography # to protect all stored files. We take security seriously and welcome # responsible disclosure of any security issues. # Vulnerability Disclosure Program # We operate a responsible disclosure program. Please report security # vulnerabilities to security@qryptsafe.com with: # - Detailed description of the vulnerability # - Steps to reproduce # - Potential impact assessment # - Proof of concept (if applicable) # Response Timeline # - Initial response: Within 24 hours # - Validation: Within 7 days # - Resolution: Based on severity (Critical: 48 hours, High: 7 days, Medium: 30 days) # - Public disclosure: After fix deployment (coordinated with reporter) # Scope # In scope: # - https://qryptsafe.com # - https://app.qryptsafe.com # - https://api.qryptsafe.com # - https://admin.qryptsafe.com # Out of scope: # - Social engineering attacks # - Physical attacks # - Denial of Service (DoS) # - Spam or brute force attacks # Safe Harbor # We support safe harbor for security researchers who: # - Make good faith effort to avoid privacy violations and data destruction # - Report vulnerabilities promptly # - Do not exploit a vulnerability beyond what is necessary to demonstrate it # - Do not publicly disclose before coordinated disclosure # Recognition # We recognize and thank researchers who help improve our security: # - Public acknowledgment (if desired) # - Hall of fame listing # - Potential bug bounty rewards (for critical vulnerabilities)