Skip to content

Security: RekaApps/autodnd

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.x ✅ Yes

Reporting a Vulnerability

AutoDND is a small open-source app with no backend, no user accounts, and no internet access. If you find a security issue, please do not open a public GitHub issue.

Instead, report it privately via GitHub's Security Advisories.

Include:

  • A description of the vulnerability
  • Steps to reproduce
  • Potential impact

You can expect an acknowledgement within 72 hours and a fix or decision within 14 days.

Scope

In scope:

  • Local privilege escalation via the foreground service
  • DND bypass or unintended activation
  • Data leakage from the Room database or DataStore

Out of scope:

  • Issues requiring physical device access
  • Android OS-level vulnerabilities
  • Social engineering

There aren't any published security advisories