Responsible Disclosure and Account Security Policy
Effective Date: August 2, 2026
PN uses reasonable safeguards appropriate to its services, including HTTPS, access restrictions, password hashing, monitoring and security controls actually enabled in production. No safeguard or response time is guaranteed.
Report suspected vulnerabilities privately to [email protected] with reproduction steps and affected URLs. Do not access data beyond what is necessary, modify another user data, disrupt service, extort PN, use social engineering, or publicly disclose an uncorrected flaw before a reasonable remediation opportunity.
Good-faith reports will be evaluated. PN does not promise payment, public credit, a fixed remediation time or an unconditional legal safe harbor. Users should use unique passwords, protect their email and report unauthorized activity.