generated: '2026-10-07' method: searched source: https://github.com/litescrape/litescrape-mcp-server/blob/main/SECURITY.md policy: https://github.com/litescrape/litescrape-mcp-server/blob/main/SECURITY.md contact: support@litescrape.com bug_bounty: false acknowledgement: '"We acknowledge reports within two business days and do not ask researchers to wait for a fix before being credited."' scope: '"Report a vulnerability in this server or in the Litescrape API"' evidence: - url: https://raw.githubusercontent.com/litescrape/litescrape-mcp-server/HEAD/SECURITY.md status: 200 quote: Report a vulnerability in this server or in the Litescrape API to support@litescrape.com. Please include the package version, the steps to reproduce, and any request IDs from the affected calls. - url: https://litescrape.com/.well-known/security.txt status: 404 - url: https://litescrape.com/security.txt status: 404 note: The disclosure path is published in the official MCP server repository's SECURITY.md and explicitly covers the Litescrape API; there is no security.txt, security page or bug-bounty program on litescrape.com.