Security
Security Notice
Please report security issues privately so the site operator can investigate before public disclosure.
What to report
Report account takeover issues, file upload bypasses, unsafe file processing, authentication bugs, authorization bugs, exposed secrets, private data leaks, SSRF, XSS, SQL injection, or download tampering.
What to include
Include the affected URL or API route, reproduction steps, expected impact, screenshots or logs where safe, and whether any data was accessed. Do not include other users' private data unless necessary to prove the issue.
Out of scope
Spam, general support, project disputes, content policy reports, and copyright reports should use the normal report/moderation flow instead.