Skip to content

Security: daniel-techAI/Locriva

SECURITY.md

Security Policy

Supported version

Security fixes are made only on the current main branch. Older snapshots and third-party forks are not maintained by this project.

Reporting a vulnerability

Do not open a public issue for a suspected vulnerability or include credentials, customer information, or exploit details in public discussions.

Email daniellaky.uni@gmail.com with the subject Locriva security report and include:

  • the affected page or file;
  • clear reproduction steps;
  • the likely impact;
  • any suggested mitigation; and
  • a safe way to contact you.

Reports are reviewed on a best-effort basis; this small project does not promise a fixed response time or a bug bounty. Please allow time to investigate before publishing details.

Current security model

The published site is static and intentionally has no authentication, database, payment handling, analytics, or form-submission backend. Enquiry forms create a local email draft. Any future service that stores data or executes server-side code must receive a separate security and privacy review before launch.

There aren't any published security advisories