Skip to content

Security: KDreamelf/openhanako

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability, please report it through GitHub:

Please include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact

I will respond within 72 hours and work with you on a fix before public disclosure.

Scope

  • Sandbox escape (PathGuard / Seatbelt bypass)
  • Credential leakage
  • Remote code execution
  • Cross-site scripting in the Electron renderer

There aren't any published security advisories