Skip to content

Security: yunfie-twitter/Palleria

SECURITY.md

Security Policy

Supported Versions

Security fixes are provided for the current development branch and the latest released version line.

Reporting a Vulnerability

If you believe you have found a security issue in Illustia, please report it privately instead of opening a public issue.

This repository does not publish a dedicated security contact address. Use the project's preferred private reporting channel, or ask a maintainer for the current security contact before sharing sensitive details.

Include as much detail as possible:

  • A short summary of the issue
  • The affected version or commit, if known
  • Steps to reproduce
  • The expected and actual behavior
  • Any logs, screenshots, or proof of concept material

What to Avoid Sharing Publicly

Do not post vulnerability details publicly until maintainers have had a chance to review and respond.

Response Expectations

After a report is received:

  1. We will acknowledge receipt.
  2. We will review and validate the report.
  3. We will work on a fix or mitigation if the issue is confirmed.
  4. We will coordinate disclosure timing with the reporter when practical.

Scope

This policy covers the Illustia Android application and related repository assets.

If your report concerns third-party services or dependencies used by the app, include the dependency name and version when available.

There aren't any published security advisories