Security

Learn how to responsibly report security vulnerabilities affecting FastMinify.

Browser-local tool processing

FastMinify tools process what you paste entirely in your browser. You can verify this yourself — step-by-step network-panel checks, the published CSP allowlist, and what a locality guarantee would cover.

Open the validation gate →

Responsible Disclosure

FastMinify values responsible security research and appreciates reports that help improve the security of the platform.

If you believe you have discovered a security vulnerability affecting FastMinify, please report it by email:

[email protected]

Please include:

  • a clear description of the issue
  • steps to reproduce
  • affected URLs or tools
  • potential impact
  • proof of concept if available

We will review all legitimate reports and work to resolve confirmed security issues as quickly as possible.

Guidelines

Please:

  • act in good faith
  • avoid disrupting the service
  • avoid accessing, modifying or deleting data that does not belong to you
  • avoid denial-of-service testing
  • only test vulnerabilities on FastMinify systems that you are authorized to access

Bug Bounty

FastMinify currently does not operate a bug bounty program and does not provide monetary rewards for vulnerability reports.

However, all legitimate reports are appreciated and help improve the platform.