Replicas · Vulnerability Disclosure

Replicas Vulnerability Disclosure

Vulnerability disclosure

Replicas publishes a vulnerability disclosure policy for reporting security issues. A dedicated security contact is published.

CompanyAICoding AgentsDeveloper ToolsAutomationCloud WorkspacesMCPDevOps
Program:

Disclosure Policy

Policy

Security Contact

Contact
founders@replicas.dev

Source

Vulnerability Disclosure

Raw ↑
generated: '2026-07-20'
method: searched
probe: true
source: https://tryreplicas.com/responsible-disclosure
policy:
- https://tryreplicas.com/responsible-disclosure
contact:
- founders@replicas.dev
bug_bounty:
  present: true
  platform: direct
  notes: >-
    For valid reports of previously unknown vulnerabilities, Replicas may issue a
    monetary bounty at its sole discretion; paid by bank wire within 30 days of
    remediation.
policy_details:
  initial_response: within 3 business days
  initial_assessment: within 10 days
  disclosure_window: 90-day confidentiality period before public disclosure
  safe_harbor: CFAA and DMCA safe-harbor protections stated
  in_scope: [web app, APIs, CLI/SDKs]
  out_of_scope: [DoS attacks, third-party vendor issues, automated scanner findings without demonstrated impact]
evidence:
- source: https://tryreplicas.com/responsible-disclosure
  kind: disclosure-page
  keywords: [responsible disclosure, bug bounty, safe harbor, security report]