Report a vulnerability

Submit your finding below, or email security@instalaw.io — both land in the same inbox. We reply within the SLA for the severity you pick.

Before you submit

  • · Check the testing scope — some targets are out of bounds.
  • · Skim the disclosure guidelines so we're aligned on next steps.
  • · Don't paste real user data, credentials, or PII.
  • · Give us enough detail to reproduce it.

Your best guess. We'll re-score during triage.

Pick the closest match. "Other" is fine.

Plain English is fine. Include the root cause if you know it.

Numbered steps beat a screenshot. Do not include real user data.

How we reach you

* required