// security

Security policy

Last updated: 3 October 2026

Reporting a vulnerability

Email security@happypaul55.com with enough detail to reproduce the issue, or open a private security advisory on theGitHub repository. Please do not open a public issue for a vulnerability.

Scope

In scope: this website (airscan.happypaul55.com) and the AirScan source code. Out of scope: the networks and devices you scan with the tool, and any backend you run yourself.

What to expect

We aim to acknowledge reports within a few days and to keep you updated as we investigate. There is no bug bounty.

Authorised testing only

AirScan is a wireless security tool. Use it only on networks and devices you own or have explicit written permission to test. Do not use it to disrupt networks you are not authorised to assess.

Machine-readable contact

Asecurity.txt is published at/.well-known/security.txt.