Security Vulnerability Disclosure
Friyay takes the security of our platform and our clients' data seriously. If you believe you've found a security vulnerability in Victoria or any Friyay product, we want to hear from you.
How to report
Email info@friyay.ai with a description of the issue, steps to reproduce, and any relevant details. We aim to acknowledge reports within 2 business days.
What we ask
- Give us reasonable time to investigate and address the issue before public disclosure.
- Don't access, modify, or delete data belonging to others.
- Don't run automated scanning tools against our production systems without contacting us first.
What you can expect from us
- An acknowledgement of your report.
- Regular updates as we investigate and remediate.
- Credit (if you'd like it) once the issue is resolved, where appropriate.
We don't currently operate a paid bug bounty program, but we're grateful for responsible disclosure and will work with you in good faith.