Contact: mailto:security@nexxi.ai Contact: https://nexxi.ai/security Expires: 2027-08-05T09:46:00.078Z Preferred-Languages: en Canonical: https://nexxi.ai/.well-known/security.txt Policy: https://nexxi.ai/security # Disclose vulnerabilities responsibly. Please email security@nexxi.ai # with reproduction steps. We aim to acknowledge within 48 hours and # remediate critical issues within 7 days. # # Out of scope: rate limit bypasses on public-tier endpoints (these # are intentionally permissive for the nexxi_doctor self-serve # diagnostic), social engineering of staff, and physical attacks.