# Pure North Peptides — Security Disclosure Policy (RFC 9116) Contact: mailto:support@purenorthpeptides.com Expires: 2027-04-21T00:00:00.000Z Preferred-Languages: en, fr Canonical: https://purenorthpeptides.com/.well-known/security.txt # Policy: and Acknowledgments: URLs removed 2026-05-27 — referenced pages # returned 404. The short-form policy below replaces them until a # dedicated /security/ landing page lives. # # We respond to coordinated disclosure as quickly as we can. Within 1 # business hour during operating hours; same-business-day for issues # reported outside hours. Critical issues (auth bypass, data leakage, # payment tampering) are prioritized over informational findings. # # In scope: purenorthpeptides.com, pure-north-admin.vercel.app, # pay.purenorthpeptides.com. # # Out of scope: rate-limit testing in production, social engineering of # customers or staff, physical access attempts, denial-of-service. # Please do not modify, exfiltrate, or destroy any production data.