Skip to content

Security: anup42/DriveSense

SECURITY.md

Security policy

Supported versions

DriveSense is prerelease software. Security fixes target the latest tagged 0.1.x source and main; older snapshots are not supported.

Reporting a vulnerability

Do not open a public issue for a suspected vulnerability, exposed credential, or privacy bypass. Use GitHub private vulnerability reporting and include:

  • affected commit/version and Android version;
  • reproduction steps or a minimal proof of concept;
  • expected impact, especially any frame, permission, or local-data exposure;
  • suggested mitigation if known.

You should receive an acknowledgement within seven days. Timelines for validation and disclosure depend on severity and maintainer availability. Please do not access data you do not own or disrupt other users while testing.

There aren't any published security advisories