We welcome reports from security researchers. If you believe you've found a vulnerability in ClearCast, please tell us so we can fix it and protect our customers.
Email security@clear-cast.net with a description of the issue, the steps to reproduce it, and any proof-of-concept. We aim to acknowledge reports within 5 business days.
We will not pursue legal action against researchers who, in good faith:
The ClearCast web application and its API (clear-cast.net). Issues in third-party platforms we integrate with (Meta, Google, X, etc.) should be reported to those providers.
We don't currently run a paid bug-bounty program, but we genuinely appreciate disclosures and will credit researchers who wish to be acknowledged.