SECURITY

Protecting
what you build.

Found a security issue in Scribe? Report it privately so we can investigate.

REPORT A VULNERABILITYsecurity@scribevcs.com

What to include

Describe the issue, affected version, steps to reproduce, and expected impact. Include a minimal proof of concept if available.

Remove real tokens, private keys, and project content from reports and logs before sending.

Deploy Scribe securely

Use TLS 1.3 and scribe-auth for a shared server. Unauthenticated TCP is intended for loopback or an authenticated tunnel.

Authentication guide
security.txtFLYING RAT STUDIO