Skip to main content

Reporting a Vulnerability

Email: security@walletsuite.io Include:
  • Description of the vulnerability
  • Steps to reproduce
  • Impact assessment
  • Affected component (MCP Server, REST API, SDK, website)
  • Your contact information (optional, for follow-up)

Scope

Response Timeline

Policy

  • We do not pursue legal action against researchers who follow responsible disclosure.
  • We will credit reporters in our changelog (unless you prefer to remain anonymous).
  • We ask that you do not publicly disclose the vulnerability until we have released a fix or 90 days have passed, whichever comes first.

Severity Definitions