Skip to content

Latest commit

 

History

History
27 lines (18 loc) · 702 Bytes

File metadata and controls

27 lines (18 loc) · 702 Bytes

Security policy

Supported versions

Security fixes target the latest published release.

Report a vulnerability

Report vulnerabilities privately by emailing support@xquik.com.

Do not open public issues for secrets, credential handling bugs, private data exposure, account takeover paths, or write-action safety bypasses.

We acknowledge reports within 3 business days. We coordinate a disclosure timeline after confirming the issue.

Scope

Security-sensitive areas include:

  • API key handling
  • Action endpoint gating
  • Catalog allowlisting
  • Private X account reads
  • Tweet, delete, follow, DM, profile, monitor, webhook, extraction, and draw actions
  • Package supply chain metadata