Game Studios

Security

Responsible Disclosure

How to report a security vulnerability affecting NavaTron Game Studios websites or games.

If you believe you have found a security vulnerability in a website, game, download, or other system owned or operated by NavaTron B.V., report it to security@navatron.com.

What to include

  • the affected game, system, URL, or file;
  • a clear description and potential impact;
  • steps to reproduce;
  • relevant screenshots or proof-of-concept material; and
  • contact information for follow-up.

Do not include personal data that is unnecessary to demonstrate the issue.

Responsible research

Research must be carried out in good faith and limited to what is reasonably necessary to demonstrate a vulnerability. Do not:

  • access, copy, change, or delete another person’s data;
  • use social engineering, phishing, physical intrusion, or denial-of-service techniques;
  • disrupt websites, stores, downloads, or game availability;
  • demand payment or threaten disclosure; or
  • continue testing after the issue has been confirmed.

For good-faith reports that follow this policy, NavaTron aims to acknowledge receipt within two business days, investigate proportionately, and keep the reporter informed when practical. We will not pursue legal action solely because of compliant good-faith research.

This policy does not create a paid bug bounty or authorise unlawful activity. Please allow reasonable time for investigation and remediation before public disclosure.