Security Transparency
Security intake posture
This summary gives researchers and customer security teams a stable view of Forge's public intake surface. It intentionally avoids private implementation details.
| Primary report path | Email reporting instructions |
|---|---|
| Security contact | security@forgeorbital.com |
| Sensitive follow-up | Coordinated after triage when additional proof is required. |
| Disclosure policy | Vulnerability Disclosure Policy |
| Public advisories | No public advisories published. |
| Bug bounty | Forge does not currently operate a paid bug bounty program. |
| Report tracking | Keep your email thread for follow-up. The website does not issue an automatic receipt. |
| Public boundary | This page covers public vulnerability intake only, not private customer environments or deployment-specific controls. |