Trust

Security at realuptime

Security work is ongoing. Here is what the service protects today, what we do not claim, and how to report a problem responsibly.

Effective August 4, 2026

Current approach

realuptime does not currently claim SOC 2, ISO 27001, PCI certification, a formal penetration test, or a security SLA. Payment details are processed by Stripe rather than stored directly by realuptime.

Report a vulnerability

Send reports to josefranco0213@gmail.com with the subject “realuptime security report.” Include the affected URL or feature, reproduction steps, likely impact, and any supporting request or response details. Do not include secrets you do not need to share.

Responsible research

When investigating a potential vulnerability:

This page is not a paid bug-bounty program and does not authorize testing of third-party systems, denial-of-service activity, physical attacks, or access beyond what is necessary to demonstrate a vulnerability.

What to expect

We review reports regularly and aim to acknowledge a credible report within three business days. Response and remediation time depends on severity and complexity. We will try to keep reporters informed, but this is a target rather than a contractual response-time guarantee.