FixGrid welcomes reports from security researchers. This policy explains how to report a vulnerability and what you can expect from us.
Email [email protected] with:
If you make a good-faith effort to comply with this policy during your research, FixGrid will:
The FixGrid production web application (app.fixgrid.app) and the marketing site (www.fixgrid.app).
Our sub-processors' own infrastructure (Render, Cloudflare, Stripe, Resend, Anthropic — report those to the respective vendor), denial-of-service, spam/social-engineering, and findings that require a compromised device or physical access.
See also our Sub-processor list and Security overview.