# https://www.rfc-editor.org/rfc/rfc9116 # # Vulnerability disclosure for fiveshield.co, apiv2.fiveshield.co and the OVH # proxy fleet behind them. Contact is the Discord support server because that # is the channel this project actually monitors; there is no security@ mailbox # to publish here, and publishing an address nobody reads is worse than # publishing none. # # Expires is REQUIRED by RFC 9116 and a lapsed file is treated as invalid, so # re-stamp it before the date below. An expired security.txt reads as neglect # to exactly the audience this file exists for. # # No Policy: field. RFC 9116 makes it OPTIONAL and there is no published # disclosure policy to link to; the Terms of Service are not one -- their # acceptable-use clauses forbid reverse-engineering and interference, which # reads as "do not test" to the audience this file exists for. If a real policy # page is ever written (scope, in-scope assets, safe harbour), re-add Policy # pointing at that page. Contact: https://discord.fiveshield.co/ Expires: 2027-09-06T00:00:00.000Z Preferred-Languages: en, fr Canonical: https://fiveshield.co/.well-known/security.txt