Security & vulnerability disclosure
Found a vulnerability in Aucip.com or one of our products? Please report it privately to security@aucip.com. Machine-readable: security.txt.
Please include
- Affected product + version, or URL
- Steps to reproduce / proof of concept
- Impact assessment
Our promise
- Acknowledgement within 2 business days
- Fix timeline within 7 days for critical issues
- Credit in the changelog (if you want it)
- No legal action for good-faith research that avoids privacy violations and service disruption
Out of scope
- Social engineering, DoS, physical attacks
- Reports from automated scanners without a working PoC
- Nulled/pirated copies of our products