Privacy

What this site stores, and what it does not.

Public catalogue

CoreCVE publishes vulnerability records that already exist in official public feeds. Those records are not personal data about you.

Accounts

User accounts are disabled on the public site. We do not collect an email address or a password for browsing CVEs.

Cookies and local storage

A theme preference (light/dark) is stored in your browser with localStorage. That is not a tracking cookie. If you use the site behind a reverse proxy, standard technical access logs (IP address, user agent, requested URL, time) may be kept on the server for security and operations, for a limited period.

Analytics and ads

The public site does not embed third-party analytics, advertising, or social pixels.

API

Requests to the public REST API are processed to return CVE data. Do not send secrets or personal data in query strings.

Contact (RGPD)

Pour une question relative aux données personnelles : contact@corecve.com.