OskivoSecurity
Report a security issue
If you find a vulnerability in an Oskivo service, email support@oskivo.com. There is no bug bounty.
What to include
Name the site, app or connector, the address you used, what you did, and what happened. Send only the detail needed to show the issue. Do not include a customer’s personal information.
In scope
- oskivo.com, including this website’s pages and files.
- The Shopify apps MakeSheet, MakeStock, MakePost, MakeRep and MakeFlow.
- The Oskivo connector at mcp.oskivo.com.
Out of scope
- Shopify, Royal Mail, Click & Drop, Firecrawl, Atlassian, and other services we do not operate.
- Social engineering, and physical access to someone’s shop or devices.
- Volumetric denial-of-service testing.
- Reports that need a customer’s private data to demonstrate, when a test store would do.
What happens next
We aim to acknowledge a report within 3 working days, and to send a fuller reply within 14 days. Please give us time to fix the issue before you publish the details.