BETTERAUTH
BACK TO BETTERAUTH.ONLINE
// SECURITY

SECURITY

Last updated: June 7, 2026
SECURITY IS A CORE PRINCIPLE, NOT AN AFTERTHOUGHT

TABLE OF CONTENTS

  1. Security Overview
  2. Data Encryption
  3. Infrastructure Security
  4. Responsible Disclosure Policy
  5. Bug Bounty Program
  6. Security Contact

1. SECURITY OVERVIEW

BetterAuth is built from the ground up with security as a foundational principle. As a software licensing and authentication platform, we understand that our customers trust us with sensitive data — license keys, user information, and application integrity. We take that trust seriously.

Our security posture encompasses:

2. DATA ENCRYPTION

In Transit:

At Rest:

Application-Level:

3. INFRASTRUCTURE SECURITY

Our infrastructure is designed for resilience and security:

4. RESPONSIBLE DISCLOSURE POLICY

We value the security research community and encourage responsible disclosure of vulnerabilities. If you believe you have discovered a security vulnerability in BetterAuth, we ask that you:

We commit to:

5. BUG BOUNTY PROGRAM

We operate a bug bounty program to reward security researchers who help us keep BetterAuth secure. Rewards are based on severity and impact:

Critical
$500+
RCE, data breach, auth bypass
High
$200–$500
Privilege escalation, injection
Medium
$50–$200
XSS, CSRF, info disclosure
Low
$25–$50
Config issues, best practices

In scope:

Out of scope:

Submit reports to [email protected] with full reproduction steps. Bounties are paid via PayPal or cryptocurrency at the researcher's preference.

FOUND A SECURITY ISSUE?

Report it securely to [email protected]

PGP key available on request

BetterAuth Support Online

Or email us: [email protected]
Start a conversation

We typically reply within minutes during business hours. Otherwise, we'll get back to you within 24 hours.