Skip to content

Security

Vulnerability Disclosure Policy

Last updated: April 5, 2026

At AMES Solutions, the security of our platform and its users is our top priority. We believe responsible vulnerability disclosure helps us all build a safer internet.

How to Report a Vulnerability

If you believe you have discovered a security vulnerability in the AMES platform, please contact us immediately at:

Email: security@amessolutions.io

What to Include

  • Description of the vulnerability
  • Steps to reproduce (if possible)
  • Impact assessment
  • Your contact information for follow-up

Our Commitment

  • We will acknowledge receipt of your report within 48 hours
  • We will investigate all reports and keep you informed of progress
  • We will publicly acknowledge the contribution of responsible reporters (unless anonymity is requested)

Safe Harbor

We will not pursue legal action against researchers who report vulnerabilities in good faith, provided they follow these guidelines:

  • Do not access, modify, or delete other users’ data
  • Do not cause service disruption or deny-of-service
  • Provide a reasonable time window before public disclosure
  • Report the vulnerability to us before disclosing it publicly

Important: This policy only applies to AMES-owned infrastructure. Third-party integrations should contact AMES at security@amessolutions.io to coordinate.