Found something? Tell us safely.
We welcome good-faith security research. If you have found a vulnerability in Dralvia, report it to our security team and we will work with you to understand and fix it. This page sets out scope, priorities, and a safe-harbour commitment.
Workspace overview
See Dralvia in action.
The dashboard brings protection modules, recent activity, charts, queues, and global scan context into one workspace.
- Start from one operational overview
- Open the relevant workflow
- See clear setup messages when a connection or configuration is needed
This preview shows the Dralvia workspace. Sign in to see your own scans, alerts, and activity.

What helps us fix it fast.
What we care about most
Cross-workspace data access, EvidencePack tampering or hash-pinning bypass, API-key disclosure, authentication / session issues, and verdict-tampering paths.
How to send it
Email [email protected] with steps to reproduce, affected endpoints, and impact. Encrypt sensitive details on request.
What to avoid
Do not run denial-of-service, do not access or modify other workspaces' data beyond what is needed to demonstrate the issue, and do not exfiltrate data.
Safe harbour
We will not pursue or support legal action for good-faith research that respects this policy and gives us a reasonable window to remediate.
Our response
We acknowledge reports, triage by severity, keep you updated, and coordinate disclosure timing with you once a fix is shipped.
Scope
Dralvia's live services and official extensions. Third-party services we integrate with should be reported to their respective programs.
Honest answers.
We run coordinated disclosure today and recognise meaningful reports. If a formal bounty matters to you, mention it in your report and we will follow up.
Report a vulnerability.
Email our security team with reproduction steps and impact. Good-faith research is protected by safe harbour.