found a security issue? please email hi@justtype.io
do not open public github issues for security vulnerabilities.
we'll respond within 24 hours and work with you to understand and fix the issue.
- encryption bypasses or weaknesses
- authentication/authorization bugs
- data exposure vulnerabilities
- xss, sql injection, etc.
- anything that could compromise user data
- we take security seriously (hence the open source)
- fixes will be deployed asap
- credit given unless anonymity is requested
- no legal threats for good-faith research :)
only the latest version gets security updates. if you're self-hosting, keep up to date.