Skip to main content

K Scan AI

Vulnerability Response Plan

Effective and last updated: July 25, 2026

K Scan AI maintains a documented process for receiving, assessing, containing, investigating, correcting, and reviewing potential vulnerabilities and security incidents.

How we respond

  1. 01Receive and document the report
  2. 02Review the available evidence
  3. 03Assess severity and possible impact
  4. 04Protect users from immediate risk
  5. 05Investigate the cause and scope
  6. 06Correct the issue
  7. 07Test the correction
  8. 08Monitor for recurrence
  9. 09Communicate when appropriate
  10. 10Record lessons and follow up work

Responsible reporting

We welcome reports from users, developers, researchers, and members of the public. Send reports to kscanai.app@gmail.com with the subject “Security Vulnerability Report.”

Do not include passwords, complete access tokens, private keys, restoration tokens, authentication cookies, private user images, or unnecessary personal information in the first message.

Scope of review

We prioritize concerns involving unauthorized account access, exposure of private images or Dressing Rooms, authentication or authorization failures, exposed credentials, public access to private systems, unauthorized data changes or deletion, and AI access outside a user’s account.

This plan may be updated as K Scan AI develops and verified improvements are completed.