Security

Current safeguards

No system is perfectly secure. These measures reduce risk but are not a guarantee against every incident.

Report a vulnerability

Email security@jotmor.com with a clear description, affected URL, reproduction steps, and impact. Do not include real user content, credentials, or unnecessary personal data.

We aim to acknowledge a good-faith report within 7 days. Jotmor does not currently operate a paid bug-bounty program, and this page does not authorize unlawful activity or promise compensation.

Account security

Use a unique password, enable TOTP, protect recovery access, sign out on shared devices, and contact us promptly if you suspect unauthorized access.