Files
openchamber/SECURITY.md
T
Bohdan Triapitsyn f6e0dafeb5 docs: rewrite READMEs with progressive disclosure, add SECURITY.md and roadmap
Main README restructured: collapsable features, quick start with secure defaults, Why a GUI section, roadmap
Package READMEs (web/desktop/vscode) rewritten with runtime-specific focus; VSCode includes full commands and settings
Added SECURITY.md, non-dev contributing guide, and updated CONTRIBUTING.md with dev scripts and ports
2026-03-05 03:07:26 +02:00

957 B

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in OpenChamber, please report it responsibly.

Email: artmore@protonmail.com

Please include:

  • Description of the vulnerability
  • Steps to reproduce
  • Affected version(s)
  • Potential impact

I'll acknowledge receipt within 48 hours and aim to provide a fix or mitigation as quickly as possible.

Please do not open public GitHub issues for security vulnerabilities.

Scope

OpenChamber handles sensitive context including:

  • UI authentication (password-protected sessions, JWT tokens)
  • Cloudflare tunnel access (remote connectivity)
  • Terminal access (PTY sessions)
  • Git credentials and SSH keys
  • File system operations

Security reports related to any of these areas are especially appreciated.

Supported Versions

Security fixes are applied to the latest release. There is no LTS or backport policy at this time.