Security Vulnerability Reporting

Last updated: March 24, 2026 (v2026-03-24)

Reporting a Vulnerability

If you discover a security vulnerability in SupperAgent, please report it to us as soon as possible. We are committed to working with security researchers to understand and resolve security issues quickly.

Please report security vulnerabilities by email to:

security@supperagent.com

Responsible Disclosure Guidelines

To help us resolve vulnerabilities quickly and safely, please follow these guidelines:

  • Do not open public issues or pull requests for security vulnerabilities. Public disclosure before a fix is available could put users at risk.
  • Do not disclose the vulnerability to third parties until we have had a reasonable opportunity to address it.
  • Provide a clear, detailed description of the vulnerability, including:
    • Steps to reproduce the issue
    • The impact of the vulnerability
    • Affected versions or components
    • Any suggested fixes or mitigations (if you have them)
  • Allow us time to respond and remediate before publishing details or proof-of-concept code.

Our Commitment to You

When you report a security vulnerability to us, we commit to:

  • Acknowledge your report within 48 hours and confirm receipt of your vulnerability report.
  • Provide an initial assessment of the vulnerability and its potential impact.
  • Work with you to understand and address the vulnerability in a timely manner.
  • Keep you informed of our progress toward resolving the issue.
  • Provide credit for your responsible disclosure (if you desire) once the vulnerability is resolved and publicly disclosed.

Security Practices

SupperAgent implements comprehensive security measures to protect user data and service integrity, including:

  • Secure authentication and authorization mechanisms
  • Encryption of data in transit (HTTPS) and at rest
  • Regular security reviews and updates
  • Secure credential management and access controls
  • Prompt patching of identified vulnerabilities

Contact Us

For security-related inquiries or to report a vulnerability, please contact EricksonWorks LLC:

For other inquiries, you may also reach us at support@supperagent.com.