privacy-security
Security
Report a security vulnerability through the public security policy and use the safe-harbour boundaries.
Report responsibly
Use the Security page's reporting address with a clear description and reproduction steps. Do not publicly disclose a vulnerability before the team has had a chance to investigate.
What the policy says
The current policy describes an acknowledgement target, investigation updates, optional reporter credit, and safe-harbour boundaries for good-faith research.
Keep the report safe
Do not access or modify other users' data, degrade the service, or run disruptive automated scans. Product Docs link to the policy; they do not add a separate security guarantee.
