Security

Reporting Vulnerabilities

If you discover a security vulnerability on this site, please report it responsibly via the contact form.

Please include a description of the vulnerability, steps to reproduce, and any relevant technical details. I will acknowledge receipt and work to address the issue promptly.

Security Practices

This site follows security best practices:

  • HTTPS everywhere (enforced via HSTS)
  • Static site generation (no server-side attack surface)
  • No user accounts or authentication
  • Minimal JavaScript and dependencies
  • Regular dependency updates
  • Content Security Policy headers

Infrastructure

This site is hosted on Vercel, which provides:

  • DDoS protection
  • Edge network distribution
  • Automatic SSL certificate management
  • Immutable deployments