Skip to content

Security: anvilfilbert/Auto-Crypto-Tradingjournal

SECURITY.md

Security Policy

Scope

This is a personal self-hosted tool, not a commercial product. Security reports are welcome and will be reviewed when time allows — but there are no response-time guarantees.

Supported Versions

Only the latest commit on main is maintained.

Reporting a Vulnerability

Please do not open a public GitHub issue for security vulnerabilities.

Instead, use GitHub Private Vulnerability Reporting to submit a report confidentially.

Include:

  • A description of the vulnerability
  • Steps to reproduce (if applicable)
  • Potential impact

What to Expect

  • Reports will be acknowledged when I see them — no fixed deadline
  • If confirmed, a fix will be prioritised in the next available session
  • Credit in the changelog if you'd like it

Deployment Note

This app is designed for personal use on a local network only. It has no authentication layer. Do not expose it to the public internet.

There aren't any published security advisories