Security at Nityox

Security is the foundation of the Nityox ecosystem. We welcome collaboration with the security research community.

The Integrity Protocol

We build robust. Every system, every service, every line of code within the Nityox ecosystem is designed with security as a first principle — not an afterthought. We believe that true security comes from transparency and collaboration with the research community.


Responsible Disclosure

If you believe you have discovered a security vulnerability in the Nityox Platform, Nityox Network, or any associated infrastructure, we ask that you disclose it to us responsibly.

  • Provide sufficient detail to reproduce the vulnerability
  • Allow reasonable time for us to investigate and remediate before public disclosure
  • Do not access, modify, or delete data belonging to other users
  • Do not degrade or disrupt Nityox services

Scope

The following assets are within scope for responsible disclosure:

  • nityox.com and all subdomains
  • app.nityox.com (Nityox Platform)
  • Nityox APIs and backend services
  • Nityox mobile applications
  • Associated cloud infrastructure

Contact

Report vulnerabilities directly to our security team.

Security Contact

Safe Harbor

Nityox will not pursue legal action against security researchers who discover and report vulnerabilities in good faith, provided they:

  • Follow the responsible disclosure guidelines outlined above
  • Do not exploit the vulnerability beyond what is necessary to demonstrate the issue
  • Do not compromise the privacy or safety of Nityox users
  • Comply with all applicable laws

We consider security research conducted in accordance with this policy to be authorized and will not initiate legal action against researchers acting in good faith.


security.txt

In accordance with RFC 9116, our machine-readable security policy is available at:

https://www.nityox.com/.well-known/security.txt