Security

Security

Ametrix handles Discord server configuration, staff workflows and beta community data. Security issues should be treated as launch blockers.

Last updated: July 19, 2026

Security principles

  • Service role keys must only exist in backend/bot environments and never in browser code.
  • Dashboard actions must remain protected by Discord authentication and workspace permissions.
  • Production deployments should disable dev-only tools and keep beta access limited until smoke tests pass.

Responsible disclosure

If you find a vulnerability, access issue or exposed secret, contact security@ametrix.cloud with reproduction steps and do not publicly disclose it until it is fixed.