SimSweep security

Found something we should fix?

Please report suspected vulnerabilities privately. A clear report gives us the best chance to understand the issue, protect people, and ship a fix.

Email security@syvr.dev. We currently accept reports in English.

What is in scope

What to include

What you can expect

Coordinated disclosure

Please give us a reasonable opportunity to investigate and fix the issue before publishing details. Contact us before disclosure so we can agree on timing. We will not ask you to keep a confirmed issue secret indefinitely.

Good-faith research and safe harbor

SYVR will not initiate legal action solely because of security research conducted in good faith and within this policy. This commitment applies only to SYVR. It cannot bind third parties, prosecutors, or regulators, and it is not a promise of immunity under every law.

If you are unsure whether a test is allowed, contact us before continuing.

Effective August 12, 2026. This policy expires for review on August 11, 2027. Revision 2026-08-12-conservative-1.