Version 1.0, 2026-10-05.
Report a vulnerability
If you find a security flaw in HumanAI, email rpad@rpad.pt with "Security" in the subject: what you found, how to reproduce it and the impact you expect. We acknowledge within 3 business days, tell you our conclusion and let you know when it is fixed; we will credit you publicly if you wish. Please do not access, change or delete data that is not yours, and stop once the flaw is confirmed; no denial of service, mass sending or social engineering; customers' systems are out of scope; and keep the flaw private until fixed or for 90 days, whichever comes first. If you follow these rules in good faith, we will not file a complaint or take legal action against you for the research. We cannot speak for third parties (such as our providers) or the authorities.