Security model
Understand boundaries between implementation, runtime, evidence and public claims.
Security & Assurance
XPScerpto separates security posture, disclosure, public advisories and evidence from operational administration while preserving a clear path for technical review.
Understand boundaries between implementation, runtime, evidence and public claims.
Report vulnerabilities through the dedicated controlled intake path.
Published advisories remain distinct from internal investigation material.
Public security claims remain limited by admitted verification and governance state.
Coordinated vulnerability disclosure
A focused channel for good-faith security research affecting systems owned and operated by XPScerpto.
01
Test only the assets listed below and only to the minimum extent needed to demonstrate the issue.
02
03
04
05
06
You will receive a reference and private follow-up code immediately. No unverified response deadline is promised. Updates appear in the secure status channel.