Skip to content

Security: FlamedDogo99/OverQuill

.github/SECURITY.MD

Security Policy

Supported versions

The most recent release of the OverQuill browser extension (available at the Chrome Web Store) should be secure, and that is the top priority of the OverQuill open source project.

Vulnerabilities found on other repositories belonging to the GitHub organization are also considered.

Vulnerabilities that only affect unofficial browsers will also be considered, but will not be triaged as critical.

Reporting a vulnerability

To report a security vulnerability, either use the GitHub vulnerability report form ("report a vulnerability" button) or contact FlamedDogo99 privately by emailing flameddogo99@gmail.com (flameddogo99 [at] gmail [dot] com).

Do not report vulnerabilities publicly. A short period of time after the patch is released, the details of the vulnerability will be publicly disclosed on GitHub. The reporter may ask to stay anonymous, otherwise they will be credited for the finding.

If there's no response after 48 hours, please open a GitHub discussion titled "I've reported a security vulnerability" on the FlamedDogo99/OverQuill GitHub repository. Do not disclose the details of the vulnerability publicly, only mention that you've reported one recently to the report form or the appropriate email address.

English is the preferred language for vulnerability reports.

Vulnerabilities disclosed

See our advisories that we have published for vulnerabilities that we have disclosed on this page (browser extension vulnerabilities only).

There aren't any published security advisories