Security Policy
Report a security issue
If you believe you have found a security problem in virtnumber.com, the customer panel, our API or our MCP server, please tell us at [email protected]. We read every report.
What to include
- The page, API endpoint or feature involved.
- The steps that show the problem.
- What someone could do with it.
Please write in English.
Please do not
We do not run a bug bounty, and we do not authorise security testing of our systems. Please do not:
- scan, attack or load-test our servers;
- access, change or delete data that is not yours, or try to get into other people's accounts;
- use phishing or any other social engineering against our team or customers;
- use our numbers or API to probe for weaknesses;
- share details of an issue publicly before we have fixed it.
If you come across a problem while using Virtnumber normally, stop there and let us know.
Rewards
We do not pay rewards for reports.
Everything else
For questions that are not about security, please use our contact page.