Responsible Disclosure
Last updated 2026-08-29
We welcome reports from security researchers who help keep Coharyn and our customers safe.
How to report
Email security@coharyn.com with a clear description of the issue, the steps to reproduce it, and its potential impact. Please do not include working exploit payloads beyond what is needed to demonstrate the issue.
Please do
Act in good faith, avoid privacy violations and service disruption, only test against assets that are clearly ours, and give us reasonable time to remediate before any public disclosure.
Please don't
Access or modify data that isn't yours, run denial-of-service or spam tests, or use social engineering against our team or customers.
What to expect
We aim to acknowledge reports promptly, keep you updated on remediation, and credit researchers who wish to be named once an issue is resolved.