> For the complete documentation index, see [llms.txt](https://docs.sat20.org/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://docs.sat20.org/english/governance-and-support/security-disclosure.md).

# Security Disclosure

Security issues need a responsible disclosure process and should not rely only on public social platform direct messages.

## To Be Established

1. Dedicated security email.
2. PGP public key.
3. Vulnerability impact template.
4. Reproduction steps template.
5. Response SLA.
6. Public bounty or acknowledgement policy.
7. Separate handling flows for STP, wallets, contracts, indexers, nodes, and Docs.

Before the formal security disclosure channel is established, contact SAT20 Labs through GitHub or official public channels and avoid publishing directly exploitable attack details.

**Page Status: Planning**
