Security

Found a vulnerability?

Effective 12 May 2026 · Version 1.0

We take security seriously and we welcome responsible disclosure from researchers and users. If you've found a vulnerability in htmldrop, please tell us before posting it publicly.

How to report

Email [email protected] with:

If you'd like to encrypt your report, ask us for our PGP key in the first message and we'll send it back.

What we'll do

Safe-harbour for researchers

If you act in good faith, follow this policy, avoid privacy violations, data destruction, and service degradation, and give us a reasonable chance to fix the issue before disclosing it publicly, we won't take legal action against you.

Please do not:

Encryption

htmldrop applies encryption in layers — each one a separate defence so a single compromise doesn't read the whole stack:

What we already do

Other controls in place today (this list isn't exhaustive — it's a snapshot, not a guarantee):

What's not in scope

Contact

Middle East Software Solutions Limited
Security: [email protected]