Aten Security · Legal
Responsible Disclosure
Report a vulnerability
If you believe you’ve found a security vulnerability in an Aten Security product or service, email security@atensecurity.com.
Use this contact for issues affecting Aten-operated websites and services, Thoth, or Aten’s published SDKs. If ownership or scope is unclear, ask before testing.
What to include
- The affected product, URL, component, and version, where available.
- A description of the issue, its potential impact, and steps to reproduce it.
- A minimal proof of concept using test accounts and non-sensitive data.
- A contact address so we can follow up with questions.
Keep reports and testing safe
Avoid accessing other people’s data, disrupting services, or testing systems without authorization. Do not include passwords, access tokens, or customer data in your initial email. If evidence contains sensitive information, request a secure way to share it.
Please coordinate disclosure with us so we can investigate and address the issue before technical details are made public.
For security documentation and vendor diligence, visit the Aten Trust Center.