Back to URLShortr

Security Policy

Last updated: July 2026

Our Approach

URLShortr is a no-signup service — we don't ask for a password or store account credentials, which limits the type of data there is to protect. The site is served over HTTPS to protect data in transit between your browser and our servers.

Reporting a Vulnerability

If you believe you've found a security issue affecting URLShortr, please report it responsibly by emailing support@urlshortr.in with enough detail to reproduce the issue. Please avoid actions that could disrupt the Service or affect other users, such as automated scanning at scale or accessing data that isn't yours.

What to Include

  • A description of the issue and its potential impact;
  • Steps to reproduce it;
  • Any relevant screenshots, logs, or proof-of-concept details.

Our Commitment

We'll acknowledge reports we receive and look into them. We ask that you give us a reasonable opportunity to investigate and address a reported issue before disclosing it publicly.