generated: '2026-07-19' method: searched probe: false source: https://fragment.dev/security policy: - https://fragment.dev/security contact: - support@fragment.dev evidence: - source: https://fragment.dev/security kind: security-page detail: >- Security page states all reports and questions go to support@fragment.dev; continuous vulnerability scanning and supply-chain monitoring are described. notes: - No dedicated bug-bounty program (HackerOne/Bugcrowd/Intigriti) or /.well-known/security.txt found at capture time.