Security reporting

Tell us quickly if something looks unsafe.

Email vivian@moedim.ai with the subject “Security report”. We record, triage and follow up through our restricted incident register.

Please include

  • The affected page or service
  • What you observed and when
  • Safe steps that reproduce it
  • Your preferred contact details

Do not include by email

  • Passwords, tokens or authentication codes
  • Full personal records or identity documents
  • Malware, destructive payloads or bulk exports
  • Information belonging to other people unless necessary

Responsible boundaries

Do not disrupt service, access another person's data, use social engineering, test physical security, send denial-of-service traffic, upload malware, or retain data you encountered accidentally. Stop when you have enough evidence to explain the issue. This page does not authorize testing that would otherwise be unlawful or outside systems owned by Moedim.

We aim to acknowledge useful reports promptly, prioritize them by risk, preserve evidence and share material progress when we can. Public disclosure should wait until a fix and safe coordination plan are agreed.