Skip to content

Security: NeaBouli/stealth

Security

.github/SECURITY.md

Security Policy

Supported Versions

Version Supported
v3.0+ Yes
< v3.0 No

Reporting a Vulnerability

Non-critical issues: GitHub Issues

Critical security issues: kaspartisan@proton.me

Response time: within 48 hours.

Security Features

  • End-to-end encryption (X25519 + DTLS-SRTP)
  • No personal data stored on servers
  • Source available — auditable by anyone
  • Secret scanning enabled
  • Push protection enabled
  • STEALTH-DELETE: emergency data wipe

Scope

This policy covers:

  • The Android client (client_android/)
  • The signaling server (backend/)
  • The website (website/)

Third-party dependencies are monitored via Dependabot.

There aren't any published security advisories