Our approach to security vulnerability disclosure and reporting
Last Updated: July 20, 2025
At HACKSACK, we take security seriously. We appreciate the efforts of security researchers and the broader community in helping us maintain high security standards. This policy outlines how to report vulnerabilities and what to expect from us.
If you believe you've found a security vulnerability in any HACKSACK-owned repository, website, or service, please report it to us through our contact form. Please include the following information:
When you submit a vulnerability report, you can expect:
This policy applies to all HACKSACK-owned websites, applications, and services. The following are explicitly OUT of scope:
HACKSACK is committed to not pursuing legal action against security researchers who:
We believe in recognizing the valuable contributions of security researchers. With your permission, we will acknowledge your contribution on our Security Acknowledgments page once the issue has been resolved.
If you have any questions about this policy, please contact us through our contact form.