Security
Learn how to responsibly report security vulnerabilities affecting FastMinify.
Browser-local tool processing
FastMinify tools process what you paste entirely in your browser. You can verify this yourself — step-by-step network-panel checks, the published CSP allowlist, and what a locality guarantee would cover.
Responsible Disclosure
FastMinify values responsible security research and appreciates reports that help improve the security of the platform.
If you believe you have discovered a security vulnerability affecting FastMinify, please report it by email:
Please include:
- a clear description of the issue
- steps to reproduce
- affected URLs or tools
- potential impact
- proof of concept if available
We will review all legitimate reports and work to resolve confirmed security issues as quickly as possible.
Guidelines
Please:
- act in good faith
- avoid disrupting the service
- avoid accessing, modifying or deleting data that does not belong to you
- avoid denial-of-service testing
- only test vulnerabilities on FastMinify systems that you are authorized to access
Bug Bounty
FastMinify currently does not operate a bug bounty program and does not provide monetary rewards for vulnerability reports.
However, all legitimate reports are appreciated and help improve the platform.