generated: '2026-08-25' method: probed source: live probes of minervaproject.com security surfaces, 2026-08-25 status: none-published note: >- No Minerva Project vulnerability disclosure program was found. /.well-known/security.txt 404s on every Minerva-operated host; the only security.txt that answers is Intercom's on the vendor-hosted help center (help.minervaproject.com), which points at Intercom's Bugcrowd program and is not Minerva's. The public security statement at /mp-security describes internal practices and compliance but names no security contact, no reporting address, no safe-harbour language and no bug bounty. No HackerOne, Bugcrowd or Intigriti program was found under the Minerva Project name. Recorded as an honest absence — no `Security` pointer is emitted. probes: - url: https://www.minervaproject.com/.well-known/security.txt status: 404 - url: https://minervaproject.com/.well-known/security.txt status: 404 - url: https://forum.minervaproject.com/.well-known/security.txt status: 404 - url: https://help.minervaproject.com/.well-known/security.txt status: 200 owner: intercom note: Intercom vendor boilerplate, Canonical https://app.intercom.com/.well-known/security.txt - url: https://www.minervaproject.com/mp-security status: 200 note: Security & compliance statement; no disclosure policy or security contact published.