If you discover a security issue in this project, please report it privately.
- Do not open a public issue.
- Do not disclose the issue publicly before it has been addressed.
Instead, contact:
- Email: justpresident át gmail ɗοt com
Please include:
- a description of the issue
- steps to reproduce, if possible
- affected versions
You can expect an acknowledgment within a reasonable time.
This project focuses on protecting data at rest using modern cryptography.
The following are considered out of scope:
- compromised operating systems
- malware, keyloggers, or clipboard managers
- privileged (root) attackers
- side-channel attacks
- availability or denial-of-service issues
Reported vulnerabilities will be investigated and addressed as appropriate.
No guarantees are made regarding response time or fixes.