Get in touch
Two ways to reach us. Send a confidential message to our team, encrypted end‑to‑end with our public PGP key — or report a security vulnerability through the entityOS Security Reward Program.
We treat the public internet as hostile — and that applies to how you reach us too. For anything sensitive, encrypt it with our public key so only ibCom can read it, in transit and at rest.
Encrypted on your machine, decrypted only by ibCom. No one in between can read it.
The key file’s hash is published in DNS, so you can confirm you got the real thing.
Confidential mail one way; vulnerability reports through the Reward Program the other.
For confidential correspondence, encrypt your message to the ibCom public PGP key and send the ciphertext to support@ibcom.biz. Only holders of the ibCom private key can decrypt it — not your mail provider, not ours, no one on the wire.
Don’t trust the key until you’ve checked it. Compute the SHA‑256 hash of the .txt you downloaded and compare it to the hash published as a DNS TXT record at pgp.ibcom.biz. If they match, the file is authentic; if they differ, stop — discard it and let us know.
The quickest path is our in‑browser message tool — it encrypts to this key entirely on your device, with nothing to install and no message ever leaving your machine unencrypted. Prefer the command line? Four steps with GnuPG follow (or a graphical client — GPG Suite, Gpg4win, Thunderbird, Mailvelope — does the same thing).
Download ibcom-pgp-public.txt above, or copy the block at the foot of this section — then verify it with the SHA‑256 check described above before you trust it.
Encrypt to the ibCom key and write ASCII‑armored output you can paste into an email.
This produces message.txt.asc — ciphertext that begins -----BEGIN PGP MESSAGE-----.
Attach or paste the armored ciphertext into an email to support@ibcom.biz. If you’d like an encrypted reply, include your own public key in the message.
ibCom public key — PGP / Ed25519
Security research goes through the entityOS Security Reward Program — a single reporting form, not email. Report it there and we’ll acknowledge, triage, remediate, and reward eligible findings, with safe‑harbour for good‑faith research.
Confidential message? Encrypt it to our public key and send it to support@ibcom.biz.
Security issue? Report it through the entityOS Security Reward Program.