Please do not report security vulnerabilities through public issues, discussions, or pull requests.
Instead, use one of these private channels:
- GitHub security advisories — on the affected repository, open the Security tab and choose Report a vulnerability.
- Email — contact@privacykey.org.
Please include as much of the following as you can:
- The project and version (or commit) affected
- Steps to reproduce, or a proof of concept
- The impact you believe the issue has
This policy applies to all repositories in the privacykey organization unless a repository declares its own security policy.
Security fixes target the latest release of each project.