Report a vulnerability
Help us understand a potential security issue affecting the Nua Security website.
Start with a concise report
If you believe you have found a vulnerability, email mail@thenuasecurity.com with the subject “Security report”.
Include the affected page or feature, a brief description, the conditions where the issue occurs, and its potential impact. Use redacted evidence and avoid including personal data, credentials, or confidential records in the initial email.
What to include
- A clear description of the observed behaviour
- The affected URL or feature
- Minimal steps needed to explain the issue
- The potential security impact
- Your preferred contact details for follow-up
Respect access boundaries
This guidance is a reporting channel, not permission to test. Do not access another person’s data, disrupt services, perform denial-of-service testing, use social engineering, or test third-party systems. If you encounter sensitive information, stop and report what you observed without collecting further data.
Handling your report
We review reports and may ask for clarification or agree a suitable way to share additional evidence. Please allow us to investigate and coordinate any remediation before publishing technical details.
Rewards and authorisation
This website does not operate a public bug bounty programme or promise a reward. Authorised testing requires a separate written agreement.