Fragment · Vulnerability Disclosure

Fragment Vulnerability Disclosure

Vulnerability disclosure

Fragment runs a coordinated vulnerability disclosure program on Hackerone. A dedicated security contact is published.

CompanyLedgerAccountingPaymentsFintechDouble-EntryMoney MovementGraphQLFinancial InfrastructureReconciliation
Program: Hackerone

Disclosure Policy

Policy

Security Contact

Contact
support@fragment.dev

Source

Vulnerability Disclosure

fragment-vulnerability-disclosure.yml Raw ↑
generated: '2026-07-19'
method: searched
probe: false
source: https://fragment.dev/security
policy:
- https://fragment.dev/security
contact:
- support@fragment.dev
evidence:
- source: https://fragment.dev/security
  kind: security-page
  detail: >-
    Security page states all reports and questions go to support@fragment.dev;
    continuous vulnerability scanning and supply-chain monitoring are described.
notes:
- No dedicated bug-bounty program (HackerOne/Bugcrowd/Intigriti) or /.well-known/security.txt found at capture time.