Protective measures
- HTTPS and secure cookies where supported.
- Access controls around production systems.
- Scoped use of third-party processors such as Supabase, Paddle, Groq, and Google Gemini.
Passwords
Passwords are handled through the authentication provider and should be unique and strong.
Responsible disclosure
Report vulnerabilities to support@vibemetricsai.com. Please include enough detail for us to reproduce the issue safely.