Skip to content

Latest commit

 

History

History
38 lines (24 loc) · 1.12 KB

File metadata and controls

38 lines (24 loc) · 1.12 KB

Security Policy

Supported Versions

Security updates are provided for the latest main branch and the latest tagged release.

Reporting a Vulnerability

Please do not open public issues for security vulnerabilities.

Report privately with:

  • A clear description of the issue
  • Impact and potential attack scenario
  • Reproduction steps or proof of concept
  • Suggested mitigation (optional)

Contact: open a private security advisory in GitHub Security tab for this repository.

If that is not available, contact the maintainer directly through the repository owner profile.

Response Targets

  • Initial acknowledgement: within 5 business days
  • Triage decision: within 10 business days
  • Fix timeline: depends on severity and complexity

Disclosure Process

  1. Vulnerability is reported privately.
  2. Maintainer confirms and assesses severity.
  3. Fix is prepared and validated.
  4. Coordinated disclosure is published with remediation guidance.

Scope Notes

This repository is an iOS client and depends on BLE firmware behavior from external ESP32 firmware. Some findings may need coordinated fixes across both repositories.