Policies and legal information
Security policy
This document explains security controls and how to report a vulnerability.
Operational conditions
Use the on-site contact form for general, correction, removal, privacy, and security requests.
Controls
Public, editorial, and reaction databases are separated, and administrative routes are kept out of the public Worker. HTTPS, Access, rate limits, HMAC identifiers, body limits, secret separation, encrypted signed backups, and dependency checks are used. Absolute security is not guaranteed.
Vulnerability and incident reports
Use the on-site contact form to report a vulnerability or suspected privacy or security incident. Do not exploit the issue or collect additional personal data; include only the minimum reproduction information. Sawada assesses impact and coordinates containment, secret rotation, recovery, and required notices.