Security & Responsible Disclosure
At Scubamail, keeping your data safe is a core responsibility — not an afterthought.
We welcome reports from security researchers, customers, and ethical hackers who help us identify potential security vulnerabilities. If you discover an issue, we encourage responsible disclosure so we can fix it quickly and protect our users.
Scope
Includes, but is not limited to
Scubamail Web Application
API and backend services
Authentication and authorization flows
Data handling and privacy-related functionality
How to Report a Vulnerability
Please include:
- A clear description of the issue
- Steps to reproduce
- Screenshots or proof-of-concept (if applicable)
- Affected URL or endpoint
Email your findings to
security@scubamail.io



