Incident Response & Security Notices
Security triage, containment, communication, preservation, customer notices, and post-incident improvement process.
Last updated: 2026-08-24 · Support: [email protected]
Security intake
Security reports should be sent to [email protected] with the subject “Security Report” or “Vulnerability Report.” Include affected URL or app version, operating system, reproduction steps, impact summary, and safe evidence.
Response process
Potential response actions may include disabling affected content, rotating keys, updating policies, removing exposed files, revoking artifacts, patching code, updating Store submissions, changing service-worker caches, and coordinating with providers.
Customer notice and improvement
When required or appropriate, OptionForge may notify affected customers, publish a website update, update the Legal Change Log, contact platform channels, and review root cause, containment, detection, communications, logging, and release procedures.