Vulnerability disclosure
Last updated: 1 October 2026
Security is our work, and we hold our own site to the same standard. If you find a vulnerability, we want to hear from you.
How to report
Write to info@translucidsecurity.com. Tell us what you found, where, the steps to reproduce it and what it would allow. Reports in English, Portuguese or Swedish are welcome.
What to expect
- A reply confirming we received your report, within five business days.
- An honest assessment, and updates while we work on the fix.
- Credit on this page once the issue is fixed, if you would like it.
We do not offer paid rewards at this time.
Scope
This policy covers translucidsecurity.com and its subdomains. Services run by other companies, such as our hosting and email providers, are covered by those companies’ own programmes.
Good-faith research
If you act in good faith and follow this policy, we consider your research authorised, we will work with you to understand and fix the issue, and we will not take legal action against you for it.
- Use only your own accounts and test data.
- Stop and report as soon as you have confirmed a vulnerability. Proof that it exists is enough.
- Keep the details between us until we have fixed it.
- Keep the site available for everyone: leave denial-of-service testing, high-volume automated scanning and social engineering out of your research.
Acknowledgments
We thank everyone who helps keep Translucid Security and its customers safe.
No reports have been credited yet. Yours could be the first.