AESKAR Security Disclosure Policy

Last updated: 2026-05-12 — Version 1.0 — RFC 9116 compliant

Scope

This policy applies to all services operated by A5 Revolve SRL (trading as AESKAR) under the following domains: aeskar.*, a5revolve.*, witted.*, njorn.*, tethys.dev, thereef.tech, thul.tech.

How to Report

Report potential security vulnerabilities by email to security@aeskar.com.

Please include:

What We Promise

What We Ask of You

Out of Scope

Encryption

For sensitive reports, request our PGP key by sending an empty signed email to security@aeskar.com. We will respond with our current public key.

Out of Scope Languages

We accept reports in English and Italian.

Contact: security@aeskar.com
Canonical security.txt: https://aeskar.com/.well-known/security.txt
Legal entity: A5 Revolve SRL, Molfetta (BA), Italy — VAT IT-08827710722