Security
We take reports about 短.在线 seriously. If you believe you found a vulnerability in our service or infrastructure, contact us.
Contact
Displayed as Unicode; some mail clients need SMTP form security@xn--s7y.xn--3ds443g.
What to include
Clear description, steps to reproduce, affected URL/host, impact assessment, and your contact. Please allow reasonable time before public disclosure.
Out of scope (examples)
Social engineering of staff, physical attacks, DoS/spam volume tests against production without permission, findings on third-party destinations opened via user short links (report those as abuse instead).
Abuse / phishing short links
Use /report — not this channel.
Policy
We do not currently offer a paid bug bounty. We may acknowledge good-faith reporters at our discretion.