Skip to content

Security: KazKozDev/pathfinder

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.0.x

Reporting a Vulnerability

We take security vulnerabilities seriously. If you discover a security issue, please follow these steps:

How to Report

  1. DO NOT create a public GitHub issue for security vulnerabilities
  2. Email your findings to: kazkozdev@gmail.com
  3. Include detailed information about the vulnerability
  4. Provide steps to reproduce the issue

What to Include

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)
  • Your contact information

Response Timeline

  • Initial Response: Within 48 hours
  • Status Update: Within 1 week
  • Resolution: As quickly as possible

Security Best Practices

For Contributors

  • Never commit sensitive data (API keys, passwords, etc.)
  • Use environment variables for configuration
  • Follow secure coding practices
  • Review code for potential security issues

For Users

  • Keep your dependencies updated
  • Use strong, unique passwords
  • Enable two-factor authentication where possible
  • Regularly backup your data

Data Privacy

  • Pathfinder stores data locally on your device
  • No personal data is sent to external servers (except AI API calls)
  • AI interactions are processed through Google Gemini API
  • Review our privacy policy for more details

Updates

Security updates will be released as patch versions (e.g., 1.0.1, 1.0.2). Always update to the latest version to ensure you have the latest security fixes.

Thank you for helping keep Pathfinder secure! 🔒

There aren’t any published security advisories