FireDev LLC · MeshVault
Security
Report security issues for meshvault.ai, the Skills pack checkout path, and related MeshVault operator materials.
Effective: July 26, 2026
Contact
Email contact@meshvault.ai with subject line starting with Security.
Machine-readable contact: /.well-known/security.txt.
What to include
- URL or asset affected
- Steps to reproduce
- Impact (what an attacker could do)
- Your preferred contact if different from the from-address
Scope
- meshvault.ai (marketing site, Skills pack pages, checkout APIs we control)
- Public GitHub samples under
thefiredev-cloudthat ship as MeshVault skills material
Out of scope for this inbox: third-party SaaS accounts, physical customer installs, and products that are not MeshVault (for example Protocol Guide uses its own contact).
Response
We aim to acknowledge valid reports within a few business days. Please give us a reasonable window before public disclosure.
No bounty program
There is no paid bug bounty. Good-faith reports are appreciated; please do not run destructive testing against production systems.