The ICOPC team takes security seriously. If you discover a vulnerability in the ICOPC protocol specification or reference implementation, please report it responsibly.
- Email: security@icoun.org
- GitHub: Open a Security Advisory (private)
- Description of the vulnerability
- Steps to reproduce
- Potential impact assessment
- Suggested fix (if any)
- Acknowledgment: Within 48 hours
- Initial Assessment: Within 7 days
- Resolution Plan: Within 14 days
Please do not disclose the vulnerability publicly until we have had a chance to address it. We commit to working with you to coordinate disclosure.