Security
HowToPrompts is a small project with a public surface. If you have found a security issue, we want to hear about it — and we will work with you to get it fixed.
Email security@howtoprompts.com. If you get no reply within a couple of days, use cihancs88@gmail.com as a fallback.
A good report includes:
We aim to acknowledge every report within 72 hours and will keep you updated as we investigate and ship a fix. Please do not open a public issue or post details before we have had a chance to respond.
In scope
howtoprompts.com and its subpages.Out of scope
If you make a good-faith effort to follow this policy, we consider your research authorized. We will not pursue or support legal action against you for accidental, good-faith violations, and we will help clarify scope if you are unsure. If legal action is brought by a third party against someone who complied with this policy, we will make it known that the activity was authorized.
There is no paid bug bounty at this time. We do credit reporters publicly on this page or in release notes, with your permission, and we are grateful for every valid report.
All listing data on HowToPrompts — repos, MCP servers, skills, agents, tools, prompts, animations, and radar items — is pulled from public APIs and feeds, then re-expressed and organized. We do not host or resell third-party content, and attribution links point back to the original source. Questions about specific content, corrections, or takedown requests go to hello@howtoprompts.com.
Last updated 2026-09-04. Machine-readable contact: /.well-known/security.txt.