Contact: mailto:security@thecurve.io Preferred-Languages: en Canonical: https://thecurve.io/.well-known/security.txt # Note: At this time, The Curve does not operate a public bug bounty program. # While we appreciate well-intentioned security research, please be aware: # - We do not reward reports generated by automated tools that identify low-risk or non-exploitable issues # - We prioritise reports of substantive, exploitable vulnerabilities that could pose real risk to our users or systems. # - Unsolicited or aggressive "beg-bounty" outreach may be ignored. # Thank you for helping us keep our systems safe and secure.