プライバシー、データ、セキュリティ

Security, Account Protection and Vulnerability Reporting Policy

Security expectations, prohibited abuse and a responsible path for reporting vulnerabilities.

最終更新: 2026年9月2日

対象: All visitors and users

重要: この文書は製品のポリシーとリスク管理についての声明であり、個人向けの法的助言ではありません。放棄できない権利を放棄させるものではなく、記載されたすべての法律がすべての法域に適用されると主張するものとして読まれるべきではありません。

Security baseline

  • Use least privilege, secret separation, rate limits and repository-enforced infrastructure boundaries.
  • Do not expose internal state services or credentials publicly.
  • Preserve auditability for security-relevant changes and incidents.

Research and reporting

Good-faith vulnerability reports should describe the issue and reproduction safely without accessing unnecessary user data, persistence, extortion, destructive testing, credential harvesting or disruption. Authorization for security testing is not implied by this policy.