| Version | Supported |
|---|---|
| 0.4.x | ✅ |
| < 0.4 | ❌ |
If you discover a security vulnerability in TermQ, please report it responsibly:
- Do not open a public GitHub issue
- Email the maintainers directly or use GitHub's private vulnerability reporting
- Include:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Any suggested fixes (optional)
We will acknowledge receipt within 48 hours and aim to provide a fix within 7 days for critical issues.
TermQ runs terminal sessions with your user privileges. Be aware that:
- Terminal sessions have full access to your shell environment
- The CLI tool (
termq open) can be invoked by any process - Board data is stored unencrypted in
~/Library/Application Support/TermQ/