Skip to content
RESTLESS
VisionBlogs
GitHub0
VisionBlogs
GitHub 0↗

Security

Send security reports privately so there is time to investigate and repair the problem before details become public.

Restless Core

Report suspected vulnerabilities through GitHub’s private vulnerability reporting. Include the affected version or commit, reproduction conditions, likely impact, and a minimal reproduction where practical.

Hosted Restless

Use the verified support or account channel supplied with your hosted access. That channel lets us establish which organisation and environment are affected without asking you to publish sensitive context.

Keep reports private

Do not open a public issue for an undisclosed vulnerability. Never include live credentials, personal information, or production workspace data. Use synthetic or redacted evidence wherever possible.

What happens next

We will acknowledge a valid report, investigate its scope, coordinate a fix, and publish an advisory when disclosure is safe. Restless’s authority boundaries and receipts help investigation, but they do not replace responsible reporting or make any system perfectly secure.

RESTLESS

Finished work, with proof.

Explore

ProductVisionBlogs

Read

Why organisations remainThe company runtimeReceipts and authority

Build

Hosted CloudOpen coreContext handoffs

Legal

PrivacyTermsSecurity
© 2026 Restless · Yao Ke · ABN 42 694 683 694[email protected] · 0466 587 477