If you discover a security vulnerability in claude-code-timelog, please report it via GitHub Security Advisories:
https://github.com/RemoteCTO/claude-code-timelog/security/advisories/new
Do not open a public issue for security vulnerabilities.
Alternatively, email security reports to: edward@bannermedia.ltd
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if you have one)
We aim to respond to security reports within 48 hours and provide a fix or mitigation plan within one week for critical vulnerabilities.
Please allow us reasonable time to address the vulnerability before public disclosure. We will coordinate disclosure timing with you.