If you find a vulnerability in readynative.app, its checkout or admin, or in the code ReadyNative ships to buyers, please tell me before telling anyone else.
How to report
Use the support form with the topic “Something is broken”, start the message with SECURITY, and leave a contact so I can reply. Include what you found, where, and the steps to reproduce it. Do not put other people’s personal data in the report.
What to expect
- A first answer within 5 working days.
- A fix, or a plan for one, as soon as the issue is confirmed, and credit if you want it.
- No legal action for research done in good faith within these rules.
Rules
- Test only against your own accounts and data; stop and report once you have access to anything that is not yours.
- No denial of service, spam through the forms, social engineering or physical attacks.
- Polar, GitHub, Vercel, Neon and PostHog have their own disclosure programmes; report issues in their services to them.