Skip to content

Security: allcounter/breach-guard

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you find a security vulnerability in Breach Guard, please report it responsibly:

  1. Do not open a public GitHub issue
  2. Open a private security advisory on this repository
  3. Include steps to reproduce and potential impact

You will receive a response within 48 hours.

Scope

The following are in scope:

  • The web application at breach-guard-theta.vercel.app
  • The source code in this repository
  • API endpoints under /api/

Out of scope

  • Third-party services (XposedOrNot, HIBP) — report to those providers directly
  • Social engineering
  • Denial of service attacks

Security design

See the Security Architecture section in the README for details on how the application is designed to protect user data.

There aren’t any published security advisories