Skip to content

Security: edycutjong/flashframe

Security

.github/SECURITY.md

Security Policy

Supported Versions

Only the main branch is currently supported with security updates.

Reporting a Vulnerability

Please report vulnerabilities privately. You can either:

  • Send an email to edy.cu@live.com
  • Use GitHub private vulnerability reporting

Do not open a public issue for a security vulnerability.

You can expect an acknowledgment within 48 hours and we will work with you on a reasonable disclosure window.

Note on Correctness vs. Security

Flashframe is a screening-grade tool, not a Harding test. A wrong verdict (a false positive or false negative on a clip) is a correctness bug and belongs in a normal issue, not the security channel.

There aren't any published security advisories