Hive Civilization · Vulnerability Disclosure

Thehiveryiq Com Vulnerability Disclosure

Vulnerability disclosure

Hive Civilization publishes a vulnerability disclosure policy for reporting security issues. A machine-readable /.well-known/security.txt is served. A dedicated security contact is published.

AgentsAgentic CommerceA2AMCPx402ReceiptsDigital SignaturePost-Quantum CryptographyAttestationDecentralized IdentityStablecoinsInferenceLLM RoutingComplianceAgent-NativeUnited States
Program: security.txt present

Disclosure Policy

Policy

Security Contact

Contact
mailto:security@thehiveryiq.com

Source

Vulnerability Disclosure

Raw ↑
generated: '2026-09-19'
method: searched
probe: true
source: https://thehiveryiq.com/.well-known/security.txt
docs: https://thehiveryiq.com/security/
policy:
- https://thehiveryiq.com/security/
contact:
- mailto:security@thehiveryiq.com
security_txt:
  url: https://thehiveryiq.com/.well-known/security.txt
  file: well-known/thehiveryiq-com-security.txt
  fields:
    Contact: mailto:security@thehiveryiq.com
    Expires: '2027-05-08T00:00:00Z'
    Preferred-Languages: en
    Canonical: https://thehiveryiq.com/.well-known/security.txt
    Policy: https://thehiveryiq.com/security/
  second_file: https://hive-mcp-gateway.onrender.com/.well-known/security.txt (Contact steve@thehiveryiq.com, Policy
    https://www.thehiveryiq.com)
program:
  type: coordinated disclosure, no bounty
  scope: 'In scope: thehiveryiq.com and all subdomains, Hive API endpoints, Cloudflare Workers serving hive-signed
    receipts, Hivemorph admin panel. Out of scope: third-party sub-processors, social engineering, denial-of-service
    testing, automated scanning without prior approval.'
  encryption: PGP key available on request at the contact address
  timeline:
    acknowledgement: to be confirmed
    triage: to be confirmed
    remediation_target: 30 days for critical; 90 days for medium/low
    public_disclosure: 90-day window from report receipt; extensions by mutual agreement
  rewards: '"We do not offer monetary bounties at this time." Public acknowledgement, coordinated disclosure and
    a letter of commendation for valid critical findings; a Hall of Fame table exists with no entries yet.'
  bug_bounty_platform: null
evidence:
- source: https://thehiveryiq.com/.well-known/security.txt
  kind: security.txt (live probe)
  http_status: 200
  fetched: '2026-09-19'
- source: https://thehiveryiq.com/security/
  kind: Vulnerability Disclosure section (searched)
  http_status: 200
  fetched: '2026-09-19'
  quote: Hive Civilization welcomes security researchers. We commit to a fair, transparent disclosure process.

Work with this as data

Every security artifact here is available over the APIs.io API and to AI agents over MCP.

MCP server

One button, every client — Claude, Cursor, VS Code and the rest.

https://apis.io/mcp

Tools for security posture

4 MCP tools reach this
  • find_securityBrowse and filter every security artifact in the catalog.
  • apis_io_searchSTART HERE — APIs, providers and tags for one query, each with its total.
  • resolveTurn a domain, URL or GitHub org into the provider it belongs to.
  • find_cohortsEvery scored population of providers in the catalog.
All 92 tools →

Call it yourself

curl for this page
This security artifact
curl "https://apis.io/api/v1/security/thehiveryiq-com-vulnerability-disclosure"
All security posture
curl "https://apis.io/api/v1/security?limit=25"

Discovery needs no key. Ratings and market analysis are Pro.

Get an API key

Free tier, no form to fill in. Signing in shares your email address with us — we store it to create your key and to recognise you if you sign in with another provider. See our Privacy Policy and Terms.

A second provider on the same verified email joins the account you already have.