Skip to content

Security: Hazel-Lin/chroniq

Security

SECURITY.md

Security Policy

Supported Versions

This project is currently early-stage. Security fixes are handled on a best-effort basis for the latest code.

Reporting a Vulnerability

Please do not open a public issue for sensitive vulnerabilities.

Instead, report the issue privately to the maintainer with:

  • affected version or commit
  • impact summary
  • reproduction details
  • suggested mitigation, if available

You can expect an initial response when the maintainer is available. Since this is a small personal open source project, formal SLAs are not guaranteed.

Data Handling

This tool stores logs as local JSONL files. Users are responsible for deciding whether their local environment, disk encryption, backup strategy, and repository practices are appropriate for the data they record.

There aren’t any published security advisories