Security reporting
Email security@asume.ai with enough detail for ASUME to reproduce and assess the issue. Do not include Customer Data or exploit a finding beyond what is needed to demonstrate it.
A formal Vulnerability Disclosure Policy with documented scope and safe-harbour expectations is still a roadmap item. Until it is published, this mailbox is the current reporting path.