# SuperDiffs security contact — RFC 9116. # The human-readable policy this file points at is the authoritative one; # if the two ever disagree, the policy page wins. Contact: mailto:security@superdiffs.com Contact: https://superdiffs.com/trust/security Expires: 2027-08-01T00:00:00.000Z Policy: https://superdiffs.com/trust/security Acknowledgments: https://superdiffs.com/changelog Preferred-Languages: en Canonical: https://superdiffs.com/.well-known/security.txt # Out of scope, in short: volumetric denial of service, missing headers with no # demonstrated impact, scanner output with no analysis, and social engineering. # The reviewer being wrong about your code is a quality bug, not a vulnerability: # support@superdiffs.com. # # Safe harbour applies to research conducted against repositories you own. # We do not run a paid bounty programme. We do respond within 48 hours.