Security reporting

Help us protect the boundary.

We welcome responsible reports about Nulx Linux and its official web infrastructure. Please avoid accessing data that is not yours, persistence, disruption, or uncontrolled testing.

Primary contact

[email protected]

Use this address for vulnerabilities affecting the operating system, official website, release integrity, or public infrastructure. Add [SECURITY] to the subject line.

Report securely

A useful report includes

  • A clear description of the issue and affected surface
  • Reproduction steps with minimal impact
  • Observed and expected behavior
  • Relevant versions, URLs, or environment details
  • Potential impact and any safe mitigation

Machine-readable contact information is available at /.well-known/security.txt.