Security and responsible disclosure
Last updated: 20 August 2026
This is how we run this website. Work we deliver for you is agreed separately.
Scope
This page is about this website and how to report a vulnerability. It is not our Cloud Security & DevSecOps service page, and we do not list certifications, audits, or product claims here that we have not published elsewhere on the site.
We treat security as part of engineering delivery. Controls for a client system are agreed in that engagement, not inferred from this page.
This website
We publish statically generated HTML. There is no visitor login. When we show the project-brief form, it sends to our endpoint and we do not keep submissions in the static pages.
Canonical URLs, the sitemap, and robots follow this website’s public address.
Reporting an issue
If you found a security issue in this website, email info@quancats.com with enough detail to reproduce it. Do not include unnecessary personal data.
Please do not publicly exploit, degrade availability, or access data that is not yours. Give us a reasonable window to investigate before any public discussion.
We do not operate a paid bug-bounty program on this site unless we publish one later on this page.
Certifications
We do not list compliance certifications here, and we do not promise a specific response time for unsolicited reports.
Our service capabilities remain on the Services and Solutions pages.