Skip to content

Security: RiskAverseTech/humanOS

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security issue in HumanOS, please do not open a public GitHub issue.

Please report it privately to Risk Averse Tech with:

  • a clear description of the issue
  • affected version / commit (if known)
  • reproduction steps
  • impact assessment (what an attacker could do)
  • any suggested mitigation (optional)

Until a dedicated security contact inbox is published, use the contact method listed on:

Scope

This repository is an open-source starter. Deployments may vary significantly depending on:

  • Supabase configuration
  • API keys and provider usage
  • hosting environment
  • custom code changes

Please include environment details in your report where possible.

Supported Versions

HumanOS is in early public release. Security fixes will be prioritized for the latest published version on main unless otherwise noted in GitHub Releases.

There aren't any published security advisories