Skip to content

Security: KSAGlory/Latestwise

SECURITY.md

Security policy

Supported version

Security fixes target the latest official release. Include the affected version or commit when reporting a problem.

Reporting a vulnerability

Use GitHub private vulnerability reporting. Do not disclose an unreported vulnerability in a public issue or pull request.

Include:

  • The affected version or commit
  • A clear description of the problem
  • Minimal reproduction steps
  • The potential impact
  • A suggested fix, if you have one

Do not include passwords, tokens, private documents, or unrelated personal information. Use a non-confidential example whenever possible.

Project-specific guidance

Latestwise compares documents locally within user-approved folders. Reports about access outside that scope, unsafe document parsing, unintended modification, or exposure of document information are in scope.

Disclosure

Allow time for investigation and a fix before publishing technical details. The maintainer will coordinate disclosure through the private report.

For installation help, usage questions, and ordinary bug reports, use GitHub Issues.

There aren't any published security advisories