Trust

Report security concerns safely.

LogiDash Flow coordinates vulnerability reports, security updates and supported-service communications without mixing them with incident or regulatory decisions.

Last updated: 27 August 2026

Private reporting

Do not open a public issue or include customer data, credentials or exploit material in an initial report. Email privacy@logidashflow.com with the affected component, impact and safe reproduction outline. We target acknowledgement within one business day and will arrange a safer transfer method when more evidence is needed.

Coordinated disclosure

Use test accounts and the minimum activity needed to demonstrate impact. Do not perform denial of service, destructive actions, social engineering, high-volume automated scanning or access to another customer's data. Stop and report immediately if you encounter personal data, secrets or evidence of active exploitation. We coordinate remediation and publication in good faith and, where legally possible, will not pursue action for research conducted within this policy. That protection does not extend to testing third-party systems.

Supported service

LogiDash Flow is currently a continuously delivered hosted service. The current production deployment is supported; historical commits, non-production environments and self-hosted copies are not supported distributions unless a written agreement states otherwise.

Updates and communications

Affected users receive controlled security advisories when an update requires customer action. A vulnerability record, operational incident communication, EOL notice and regulatory notification are separate decisions and records. This policy is not a certification or a claim of legal or standards compliance.

Assurance enquiries

Customers can request the technical, organisational and support information applicable to their deployment through info@logidashflow.com.