What to include
Share the affected page or service, steps that reproduce the issue, the impact you observed, and a safe way to contact you. The initial form accepts no attachments; supporting evidence can be arranged after triage.
Responsible disclosure
If you believe you have found a security vulnerability in 1Anchor, report it privately through the centralized Covevi Labs disclosure form so the right team can investigate and respond responsibly.
Report a security issueShare the affected page or service, steps that reproduce the issue, the impact you observed, and a safe way to contact you. The initial form accepts no attachments; supporting evidence can be arranged after triage.
Please avoid accessing or changing another person’s data, disrupting service, using social engineering, or publicly disclosing an issue before we have had a reasonable opportunity to investigate.
We will acknowledge useful reports as soon as practical, validate the scope, and share meaningful updates when we can. 1Anchor does not currently operate a paid bug-bounty program.
Report privately
Do not send passwords, authentication tokens, household invitation links, children’s information, private schedules, or other sensitive family data.
If a small sample is necessary to explain the problem, remove or replace personal information first. Please stop testing if you encounter information that does not belong to you.