Skip to main content
1Anchor
Get updates

Responsible disclosure

Help us protect
what families trust us with.

If you believe you have found a security vulnerability in 1Anchor, report it privately through the centralized Covevi Labs disclosure form so the right team can investigate and respond responsibly.

Report a security issue
01

What to include

Share the affected page or service, steps that reproduce the issue, the impact you observed, and a safe way to contact you. The initial form accepts no attachments; supporting evidence can be arranged after triage.

02

What we ask

Please avoid accessing or changing another person’s data, disrupting service, using social engineering, or publicly disclosing an issue before we have had a reasonable opportunity to investigate.

03

What to expect

We will acknowledge useful reports as soon as practical, validate the scope, and share meaningful updates when we can. 1Anchor does not currently operate a paid bug-bounty program.

Report privately

Protect people while you report.

Do not send passwords, authentication tokens, household invitation links, children’s information, private schedules, or other sensitive family data.

If a small sample is necessary to explain the problem, remove or replace personal information first. Please stop testing if you encounter information that does not belong to you.

Use the protected security report form