If you discover a vulnerability in the RPS-eXtended project, please disclose it privately and responsibly.
Preferred:
- Discord: http://discord.rp-s.tech
- DM anyone with the role
@RPSX-Developer
or@Role Play Systems
.
- DM anyone with the role
Alternative:
- Email: owner@rp-s.tech
Please include as much detail as possible: → What’s affected, how to reproduce, possible impact, and mitigation suggestions.
Some vulnerabilities may affect shared upstream code (e.g. SS14 engine). If so, and only after contacting us, you may also forward reports to:
- Email: telecommunications@spacestation14.com
- Discord: https://discord.gg/MwDDf6t
❗ Please do not escalate to Space Wizards or the SS14 Hub before giving us a chance to investigate. Bypassing us may be treated as a violation of our LICENSE-RPSX.md, section 8.2.
- We will confirm receipt and begin investigating.
- Fixes will be prioritized and published as necessary.
- You may receive public credit (optional).
Thank you for your cooperation and helping us maintain the security of RPS-eXtended.