Security

Security is the product here, not a feature — so we treat reports as gifts. If you have found a weakness in the YGOOW relay, the Android app, or the cryptography, we want to hear from you.

How to report

Email security@ygoow.com. A machine-readable contact lives at /.well-known/security.txt (RFC 9116). For encrypted reports, use our PGP key — fingerprint 4B01 B8B1 132F 33C5 DC06 7DC2 6893 22E3 4899 BB1B, the same key that signs our warrant canary.

Please tell us what you found, how to reproduce it, and the impact you believe it has. A working proof-of-concept helps us confirm quickly.

What we commit to

In scope

We are especially interested in the parts we built ourselves rather than inherited: the deterministic bootstrap that replaces a prekey server, the hybrid combiner, and the transactional decryption path. If you can desynchronise a live ratchet, forge a state transition, or show that our ML-KEM implementation deviates from FIPS 203 on any input, we want that report before anyone else gets it.

Out of scope

What we don’t pretend

We do not run a paid bug bounty yet, and we will not imply otherwise. What we offer is a fast, honest, no-lawyers response and public credit. As the project matures — and ahead of the independent audit we have committed to — this will grow.