Back to Homepage
Enterprise Security
Security & Vulnerability Disclosure
Infoskills Technology Private Limited (CIN: U72900UP2020PTC130521)
1. Security Architecture
Access Setu is engineered from the ground up for zero-trust developer environments:
- OAuth 2.0 PKCE & RS256 Authentication: All remote HTTP / SSE connections require cryptographically signed JSON Web Tokens (JWT) verified against dynamic JWKS key sets.
- SHA-256 Checksum Matching: The file patch tool enforces pre-mutation checksum verification to prevent accidental code destruction or race conditions.
- Process Sandboxing: Background processes execute strictly within the designated workspace boundaries with explicit timeouts.
2. Responsible Vulnerability Disclosure
We welcome security researchers and developers to inspect our software. If you discover a security vulnerability or potential privilege escalation vector, please report it immediately to our security response team:
Security Contact: info@infoskillstechnology.com
Subject Format:
Please include reproducible proof-of-concept steps. We acknowledge all reports within 24 hours and issue CVE patches promptly.
Subject Format:
[SECURITY VULNERABILITY REPORT] Access Setu EnginePlease include reproducible proof-of-concept steps. We acknowledge all reports within 24 hours and issue CVE patches promptly.