Privacy
What this site stores, and what it does not.
Public catalogue
CoreCVE publishes vulnerability records that already exist in official public feeds. Those records are not personal data about you.
Accounts
User accounts are disabled on the public site. We do not collect an email address or a password for browsing CVEs.
Cookies and local storage
A theme preference (light/dark) is stored in your browser with localStorage. That is not a tracking cookie. If you use the site behind a reverse proxy, standard
technical access logs (IP address, user agent, requested URL, time) may be kept on the server
for security and operations, for a limited period.
Analytics and ads
The public site does not embed third-party analytics, advertising, or social pixels.
API
Requests to the public REST API are processed to return CVE data. Do not send secrets or personal data in query strings.
Contact (RGPD)
Pour une question relative aux données personnelles : contact@corecve.com.