Security

Last updated: September 16, 2026

Responsible disclosure

If you believe you have found a security issue in Blackwork, email support@blackwork.app with the affected URL, reproduction steps, impact, and supporting evidence. Please avoid accessing, changing, or deleting other users' data.

Review and response

We will acknowledge a report when we can and investigate it based on severity, reproducibility, and user impact. Please give us reasonable time to investigate and deploy a fix before public disclosure.

Rewards

Blackwork does not currently operate a paid bug bounty program. Reports do not create an entitlement to cash payment. We may offer complimentary product access or another non-cash thank-you at our discretion, and any reward must be agreed in writing before it is treated as promised.

Scope

Social engineering, denial-of-service testing, spam, automated high-volume traffic, and testing that could affect other users or service availability are out of scope.

Security — Blackwork