Support
Responsible Disclosure
If you discover a security vulnerability in MinT, the MinT client SDK (mindlab-toolkit), or any of the public MinT repositories, please report it privately so we can address it before public disclosure.
How to report
Email security@mindlab.ltd (or contact@mindlab.ltd if security@ is not yet provisioned for your case) with:
- A description of the vulnerability and its potential impact.
- Steps to reproduce, including affected versions, endpoints, and any specific configuration.
- Any proof-of-concept code or logs (mask credentials before sending).
Please do not file public GitHub issues for security reports.
What to expect
- Acknowledgement within 5 business days.
- A coordinated timeline for fix and disclosure, typically 30–90 days depending on severity.
- Public credit (with your consent) once a fix is shipped.