Security Vulnerability Disclosure

Friyay takes the security of our platform and our clients' data seriously. If you believe you've found a security vulnerability in Victoria or any Friyay product, we want to hear from you.

How to report

Email info@friyay.ai with a description of the issue, steps to reproduce, and any relevant details. We aim to acknowledge reports within 2 business days.

What we ask

  • Give us reasonable time to investigate and address the issue before public disclosure.
  • Don't access, modify, or delete data belonging to others.
  • Don't run automated scanning tools against our production systems without contacting us first.

What you can expect from us

  • An acknowledgement of your report.
  • Regular updates as we investigate and remediate.
  • Credit (if you'd like it) once the issue is resolved, where appropriate.

We don't currently operate a paid bug bounty program, but we're grateful for responsible disclosure and will work with you in good faith.