Skip to content
BetaChangelog.gg
GamesUpdates
HomeGamesUpdates

Legal

Security Policy

How to report vulnerabilities in Changelog.gg web, API, and Discord integrations.

Operator
KORDU LTD
Company number
16836154
Last updated
16 May 2026
Contact
security@changelog.gg

Scope

Report vulnerabilities in changelog.gg, public API routes, account and dashboard flows, Discord OAuth or bot integration, and billing integration issues to security@changelog.gg.

Include the affected URL, steps to reproduce, impact, screenshots or logs where useful, and a safe contact address.

Do not include personal data, secrets, tokens, payment data, or third-party confidential information in a report unless it is strictly necessary to demonstrate impact and you have minimized it.

Safe harbour

We will not pursue legal action for good-faith research that stays within this policy, avoids privacy violations, avoids data destruction, avoids persistence, avoids service disruption, and gives us a reasonable time to investigate before disclosure.

This is not a bounty program and does not promise payment, swag, credits, or public acknowledgement.

Out of scope

Do not run denial-of-service tests, spam Discord servers, attack users or third-party providers, access data that is not yours, use leaked credentials, bypass payment for paid use, or test physical, social, or phishing attacks.

Last detectionLoading·--sourced updates·--games tracked

Changelog.gg

Evidence-first game update intelligence. Patch notes, source trails, and what actually changed across the games your community plays.

Independent archive. Not affiliated with Valve, Steam, or any listed publisher.

Explore

  • Games
  • Deals
  • Drivers
  • Updates
  • Sources Soon
  • Discord alerts
  • Dashboard

Legal

  • Terms
  • Privacy
  • Cookies
  • Copyright/DMCA
  • Security
  • Subprocessors
  • Contact

© 2026 KORDU LTD