# Digital Fish Rain / Project Research LLC — Security Disclosure Policy # https://www.rfc-editor.org/rfc/rfc9116 # # This site is a static, client-side-only browser game: no accounts, no # payments, no server-side application logic, and no database. If you've # found something anyway — an XSS vector, a CSP bypass, a header # misconfiguration, exposed source/credentials, or a hosting-level issue — # we want to hear about it. # # Please include: the affected URL, a description of the issue, and steps # to reproduce. We ask that you avoid automated mass-scanning that could # degrade the site for other players, and that you give us a reasonable # window to fix an issue before any public disclosure. Contact: mailto:admin@projectresearchllc.com Contact: https://www.digitalfishrain.com/contacts.html Expires: 2027-08-18T23:59:00.000Z Canonical: https://www.digitalfishrain.com/.well-known/security.txt Preferred-Languages: en