Trust & Security
Vulnerability Disclosure Policy
How to report security issues to Kampra.
Last updated July 26, 2026
1. Scope
Kampra welcomes reports of vulnerabilities affecting our public production services on trykampra.com and *.trykampra.com. Testing must not degrade the Services or access data belonging to other users.
2. Safe harbor
Good-faith research conducted in accordance with this policy will not be pursued by Kampra as a violation of our Terms.
3. How to report
Send reports to security@trykampra.com including a description, reproduction steps, and impact. PGP key available on request.
4. Out of scope
Social engineering of staff or customers, physical attacks, denial-of-service testing, and vulnerabilities in third-party services.
