# Mergelay — vulnerability reporting # Full policy, scope and safe harbour: https://mergelay.com/security # No PGP key is published. Send plain email; do not attach data you were able to read. # Mergelay pays no bug bounty. Contact: mailto:security@mergelay.com Expires: 2027-08-31T00:00:00Z Preferred-Languages: fr, en Canonical: https://mergelay.com/.well-known/security.txt Policy: https://mergelay.com/security