Security vulnerability reporting for the Balosys platform
Literary Worx LLC takes the security of the Balosys platform seriously. We welcome good-faith security research and responsible disclosure of vulnerabilities. This Policy describes how to report security issues and what researchers can expect from us.
This Policy applies to security vulnerabilities discovered in:
This Policy does not cover third-party platforms (Anthropic, Webflow, HeyGen), subscriber systems or devices, or social engineering attempts.
Report vulnerabilities promptly and confidentially:
Please include:
We will not pursue legal action against researchers who discover and report vulnerabilities in good faith, refrain from accessing data beyond what is necessary to demonstrate the issue, do not exploit vulnerabilities for other purposes, allow reasonable remediation time before public disclosure, and do not conduct denial-of-service attacks or access subscriber PII.
We request a minimum of ninety (90) calendar days from acknowledgment before public disclosure. For imminent risks, contact info@literaryworx.com immediately for coordinated response.
We may update this Policy at any time. Changes are effective upon posting at balosys.com. Questions: info@literaryworx.com.