FerrLens is a free web-tools suite. It does not host websites or content published by its users, so there is no third-party content to notify us about. This page covers two things: reporting abuse of the FerrLens tools or API, and reporting a security issue in FerrLens itself.
<h2>Reporting abuse of the tools or API</h2>
<p>
Write to <a href="mailto:abuse@ferrlabs.com">abuse@ferrlabs.com</a> if you have observed,
for example:
</p>
<ul>
<li>Someone using a FerrLens tool to attack, probe or disrupt a system you operate</li>
<li>Abusive or automated scanning that circumvents our rate limits or API quota</li>
<li>Any other misuse of the tools or API to harm a third party</li>
</ul>
<p>
Please include the date and time (with timezone), the tool or API endpoint involved, the
source IP if you have it, and any relevant logs. The more precise the report, the faster we
can act.
</p>
<h2>Reporting a security issue</h2>
<p>
If you have found a vulnerability in the FerrLens site or API, report it privately to
<a href="mailto:security@ferrlabs.com">security@ferrlabs.com</a>. Describe the issue, how
to reproduce it, and the affected URL or endpoint. Please do not publicly disclose the issue
before we have had a chance to fix it. Our full security policy is at
<a href="/security/">ferrlens.com/security</a>.
</p>
<h2>Response time</h2>
<p>
We acknowledge receipt within 48 hours and triage reports by severity. Confirmed abuse may
result in rate limiting, blocking, or suspension of the offending access.
</p>