1Our Commitment
Frenzy Meet takes the security of our users and platform seriously. We welcome reports from security researchers and the public that help us identify and fix vulnerabilities before they can be exploited.
2Scope
This policy covers the Frenzy Meet Android app, the frenzymeet.com website, and backend services that support them.
- In scope: authentication and account security, payment and coin-purchase flows, data exposure, live-stream or chat security, API vulnerabilities
- Out of scope: third-party services we do not control (e.g. Google Play billing infrastructure), social engineering of staff or users, physical security, denial-of-service testing
3How to Report
Email a detailed report to support@frenzymeet.com with the subject line "Security Disclosure", including:
- A clear description of the vulnerability and its potential impact
- Step-by-step instructions to reproduce the issue
- Any proof-of-concept code, screenshots or video (without accessing or exposing real user data)
- Your contact details, so we can follow up
4Rules of Engagement
When testing, please:
- Avoid accessing, modifying or deleting data that does not belong to you
- Never attempt to view another user's live streams, messages or personal data
- Do not run automated scanners that could degrade service for other users
- Give us reasonable time to investigate and remediate before disclosing publicly
5Safe Harbor
We will not pursue legal action against researchers who make a good-faith effort to comply with this policy, report issues privately, and avoid privacy violations, data destruction, or service disruption.
6What to Expect From Us
We aim to acknowledge reports within 5 business days, provide an initial assessment within 10 business days, and keep you updated as we work toward a fix. Recognition may be offered for valid, high-impact reports at our discretion; this program does not currently offer monetary bounties.
Questions about this policy?
support@frenzymeet.com
Frenzy