Skip to content

Security: mzinga-io/mzinga-apps

Security

SECURITY.md

🔐 Security Policy

At Newesis, we believe that collaboration with security researchers is essential to protect our users and software.
We welcome responsible disclosures and are committed to resolving security issues quickly and transparently.


📬 Reporting a Vulnerability

If you believe you’ve found a security issue in this project, please contact us privately at:

📧 contact@mzinga.io

Please include:

  • A detailed description of the issue
  • Steps to reproduce (if possible)
  • Any relevant logs, screenshots, or PoC

We will respond within 5 business days and aim to resolve valid reports within 30 days.


🛡️ Disclosure Policy

We ask that you:

  • Report the vulnerability to us as soon as possible.
  • Give us a reasonable time to investigate and resolve the issue before public disclosure.
  • Avoid data leaks, service disruption, or access to other users’ accounts during testing.
  • Do not use automated scanners on production environments.

We may publicly acknowledge your contribution with your consent, once the issue is resolved.


🚫 Please do not:

  • Perform Denial of Service (DoS) attacks
  • Use social engineering (including phishing)
  • Access or modify data that doesn’t belong to you
  • Target our staff, infrastructure, or customers

🤝 Let’s Work Together

If you’re unsure whether your findings qualify as a vulnerability, or you’d like guidance during your research, please reach out.
We’re happy to help.

Thank you for helping us make this project safer for everyone!

There aren’t any published security advisories