Legal & Support
Vulnerability Disclosure
Corporate identity: OptionForge is a software product owned and operated by NeuroQuant Financial Technologies Inc. References to OptionForge identify the product; NeuroQuant is the owner/operator where a legal entity is required.
Security-report intake, safe-harbor boundaries, evidence handling, and prohibited testing behavior.
Current distribution model: OptionForge itself is free to download from Microsoft Store. OptionForge does not charge a subscription or purchase price for the current public release. Third-party broker, market-data, exchange, connectivity, or other external-service charges may still apply under those providers' terms.
This page is part of the OptionForge legal and support directory. Mandatory rights, platform rules, and applicable law prevail where they cannot be waived.
Purpose
This page explains how to report a suspected vulnerability, security weakness, exposed data, app-integrity issue, website configuration issue, or abuse concern involving OptionForge.
How to report
Send reports to [email protected] with the subject line “Security report” or “Vulnerability disclosure”. Include affected URL or app version, steps to reproduce, expected impact, screenshots or logs when useful, and contact information for follow-up.
Do not include sensitive data
Do not send passwords, full payment-card numbers, private keys, access tokens, recovery codes, government IDs, or unrelated personal data. Redact logs and screenshots before submitting.
Prohibited testing
Do not perform destructive testing, denial-of-service testing, social engineering, phishing, spam, malware deployment, credential stuffing, data exfiltration, persistence, privilege escalation beyond what is necessary to prove impact, or testing against third-party systems without authorization.
Good-faith reports
Good-faith, non-destructive reports that avoid privacy invasion, service disruption, and unauthorized access will be reviewed according to severity and available information.
Response expectations
OptionForge may acknowledge, request additional details, reproduce, prioritize, fix, mitigate, decline, or disclose issues based on risk, scope, exploitability, and product relevance.
Related pages
Read this page with the Security Overview, Data Security & Retention, Privacy Policy, Acceptable Use, and Contact & Requests pages.
Complete legal and support directory
Legal OverviewComplete legal and support policy map for OptionForge website, desktop app, Microsoft Store listing, free distribution, privacy, support, security, market-data, and risk disclosures.Terms & ConditionsTerms for the OptionForge website, Microsoft Store free-download path, desktop app references, support, restrictions, liability, free distribution, and acceptable use.Terms of ServiceAlternative title for the OptionForge Terms & Conditions.Privacy PolicyPrivacy policy for OptionForge website, support, diagnostics, Microsoft Store app access, cookies, analytics, security, retention, and user rights.Privacy NoticeShort-form privacy notice for the OptionForge website, support, Microsoft Store access path, diagnostics, cookies, retention, and rights.Refund PolicyRefund, cancellation, download, free distribution, Microsoft Store, direct agreement, and support-routing policy for OptionForge.EULAEULA for the OptionForge desktop application covering license grant, activation, restrictions, updates, data, third-party services, and termination.Risk DisclosureRisk disclosure for options analytics, model risk, market data, execution, liquidity, margin, taxes, and no-advice boundaries in OptionForge.Support PolicySupport policy for OptionForge covering support scope, intake, excluded support, privacy, priorities, and Microsoft Store access routing.SupportSupport policy for OptionForge covering support scope, intake, excluded support, privacy, priorities, and Microsoft Store access routing.Company InformationCompany and product information for OptionForge, including product identity, contact, Store path, commercial scope, and legal boundaries.Acceptable UseAcceptable-use rules for OptionForge website, app, support channels, licensing, security controls, and user submissions.Data Security & RetentionData security and retention policy for OptionForge website, local app data, support records, deletion requests, and incident routing.IP & License BoundariesIP ownership, license limits, brand use, screenshots, feedback, third-party names, and content restrictions for OptionForge.Service Availability & Business ContinuityAvailability, maintenance, service interruption, backup, continuity, and no-SLA details for OptionForge website and app workflows.Service FulfillmentService fulfillment policy for OptionForge covering Microsoft Store delivery, install, updates, downloads, free distribution, and enterprise arrangements.Export Controls & SanctionsExport-control, sanctions, restricted-use, and compliance policy for OptionForge software and support.Cookie PolicyEssential storage, service-worker cache, analytics tags, browser controls, and consent notesDiagnostics & LogsWhat logs may contain, how support uses them, redaction guidance, retention, and deletion requestsContact & RequestsSupport, privacy, deletion, correction, security, licensing, and business request routingAccessibility StatementAccessibility intent, feedback channel, known scope limits, and support request handlingSecurity OverviewSecurity posture, vulnerability reporting, user responsibilities, local-device boundaries, and incident handlingAccount & Microsoft Store AccessMicrosoft account, Store listing, install, update, Store access, device, and access expectations.Consumer Rights & ComplaintsConsumer-law reservation, complaint routing, escalation, records, and non-waivable rights.Market Data & Third-Party ServicesThird-party market data, provider outages, delayed data, API changes, and no-guarantee boundaries.Investment Advice DisclaimerNo investment, trading, legal, tax, accounting, fiduciary, brokerage, custody, or execution advice.Analytics Models & LimitationsModel assumptions, probability limits, Greeks limits, scenario limits, and validation responsibilities.Local Data & Device PermissionsLocal project files, settings, diagnostics, app package paths, Store Store access checks, and device boundaries.Vulnerability DisclosureSecurity-report intake, safe-harbor boundaries, evidence handling, and prohibited testing behavior.Legal Change LogLegal/support document update history, publication notes, cache-version notes, and review reminders.