Security
Security Policy
Responsible Disclosure
We take the security of this website seriously. If you discover a security vulnerability, we would appreciate your help in disclosing it to us responsibly.
How to Report Security Issues
If you find a security vulnerability, please:
- Email us at: hi@zeospec.com
- Include "Security Vulnerability" in the subject line
- Provide a detailed description of the issue
- Include steps to reproduce the vulnerability
- Do not publicly disclose the vulnerability until we've had time to address it
What We Promise
- We will acknowledge receipt of your report within 48 hours
- We will investigate and provide updates on our progress
- We will work to fix the issue in a reasonable timeframe
- We will credit you in our security acknowledgments (unless you prefer to remain anonymous)
Security Measures
This website implements several security measures:
- HTTPS encryption for all communications
- HTTP security headers (including HSTS, framing policy, and Cross-Origin-Opener-Policy) via the hosting platform
- A Content Security Policy in report-only mode to monitor and tighten script and resource restrictions over time
- Regular security updates and monitoring
- Input validation and sanitization where user-supplied data is accepted
Contact Information
For security-related inquiries:
Email: hi@zeospec.com
Security.txt: /.well-known/security.txt