Use this for scoped security discussions, responsible disclosure, collaboration, portfolio feedback, or questions about the work on this site.
Charlie reads the message and replies with questions, next steps, or a clear no if it is outside current scope.
If real testing is involved, scope, permission, and boundaries are confirmed before anything technical happens.
For authorised work, a written scope and Rules of Engagement are agreed. NDA discussion is available if needed.
The output depends on the discussion: a reply, a write-up, a scoped report, or a referral if another route is better.
No hard minimum. If a project is suitable, cost and time are discussed plainly based on scope and current capability.
No. Personal projects, small startups, hobby apps, and student collaborations are all fine topics. Written authorisation is still required for any testing.
That is fine. Send the context and likely scope. The reply will be an estimate, a request for more detail, or a recommendation to use another provider.
Confidentiality can be discussed before any scoped work is agreed. Keep sensitive material out of the first message until the boundary is clear.