Click Studios

Click Studios (SA) Pty Ltd is an Agile software development company specialising in the development of a secure Enterprise Password Management solution called Passwordstate.

Contact Info

Level 2, 70 Hindmarsh Square, Adelaide, SA 5000, Australia
sales@clickstudios.com.au

Follow Us

Report a Security Issue

At Click Studios, we are committed to delivering a secure and resilient Enterprise Password Management solution. Security is at the core of our development process, and we continually strive to mitigate risks. However, given the dynamic and evolving nature of cybersecurity, vulnerabilities may occasionally surface.

If you have identified a potential security vulnerability within Passwordstate, we encourage you to report it promptly. Please submit your findings via email to security@clickstudios.com.au.

What to Include in Your Report

Detailed Proof-of-Concept (PoC)
Provide reproducible steps, code samples, and screenshots to help us verify and assess the issue.
Impact Analysis
Explain how the vulnerability could affect customers, including potential risks and real-world implications.
Please avoid including sensitive customer data in your submission. If demonstrating impact requires sample data, use redacted or synthetic examples.

Our Security Assessment Process

1
Verification & Reproduction
We validate the reported vulnerability to confirm its authenticity.
2
Severity Classification
We assess severity using CVSS 3.1 to determine impact.
3
Risk Mitigation Planning
We consider your recommendations and define an appropriate remediation plan.
4
Resolution & Communication
We keep you informed and notify you once a fix has been deployed.

Responsible Disclosure & Confidentiality

We kindly request that all reported vulnerabilities and related communications remain confidential until a resolution has been implemented. Click Studios follows a responsible disclosure policy to ensure security gaps are addressed without exposing customers to undue risk.

Legal & Ethical Considerations

Any attempt to exploit a vulnerability beyond what is necessary for responsible disclosure — such as unauthorized access, data exfiltration, or system disruption — may result in legal action. Activities that compromise customer data or internal systems may lead to civil or criminal liability.

We appreciate your collaboration in maintaining the security of Passwordstate and thank you for helping us uphold the highest standards of enterprise security.