If you discover a security issue in HumanOS, please do not open a public GitHub issue.
Please report it privately to Risk Averse Tech with:
- a clear description of the issue
- affected version / commit (if known)
- reproduction steps
- impact assessment (what an attacker could do)
- any suggested mitigation (optional)
Until a dedicated security contact inbox is published, use the contact method listed on:
This repository is an open-source starter. Deployments may vary significantly depending on:
- Supabase configuration
- API keys and provider usage
- hosting environment
- custom code changes
Please include environment details in your report where possible.
HumanOS is in early public release. Security fixes will be prioritized for the latest published version on main unless otherwise noted in GitHub Releases.