Last updated: May 2026
If you believe you have found a security vulnerability in FounderSold, please report it responsibly by emailing foundersold@gmail.com. We will acknowledge your report within 72 hours and aim to resolve confirmed issues within 30 days.
Please do not publicly disclose the vulnerability until we have had a chance to address it.
Out of scope: Vercel preview deployment URLs, third-party services (Supabase, Stripe, Upstash), and social media accounts.
We consider security research conducted under this policy as authorized. We will not pursue legal action against researchers who discover and report vulnerabilities responsibly and in good faith, following the guidelines above.
Email: foundersold@gmail.com
Machine-readable: /.well-known/security.txt