generated: '2026-08-26' method: probed source: live probes 2026-08-26 program: none-found security_txt: served: false probes: - url: https://pvcase.com/.well-known/security.txt status: 404 - url: https://prospect.pvcase.com/.well-known/security.txt status: 200 note: SPA catch-all HTML shell, not an RFC 9116 document - url: https://core-v2.prod.andersonopt.com/.well-known/security.txt status: 404 bug_bounty: platform: null url: null disclosure_policy: url: null security_contact: null probes: - url: https://pvcase.com/security status: 404 - url: https://pvcase.com/trust status: 404 - url: https://trust.pvcase.com/ status: ' (DNS does not resolve)' note: >- PVcase publishes no security.txt, no vulnerability-disclosure policy, no bug-bounty programme and no dedicated security contact. The trust centre (pvcase.com/trust-center) exists and names SOC 2 / SOC 3 attestations, but routes all enquiries to legal@pvcase.com rather than a security address. Recorded as an honest absence; no Security pointer is emitted because there is no disclosure surface to point at.