I suggest improving the response and follow-up process for submitted security reports.
I have submitted several security reports to Nolt, but I have not received any response or status update on them so far. It would be helpful if researchers could receive at least a confirmation that their reports have been received, along with a status update once they have been reviewed.
Better communication around submitted reports would make the security reporting process clearer and more transparent for researchers.