Skip to content

Security: pleniv01/quieter.ai

Security

SECURITY.md

Security Policy

Quieter.ai deals with privacy-sensitive infrastructure. We take security concerns seriously, while setting clear expectations about scope and support.


Reporting a Vulnerability

If you believe you have discovered a security or privacy issue:

  • Do not open a public GitHub issue
  • Email: quieter@quieter.ai
  • Include enough detail to reproduce the issue

Responses are provided on a best-effort basis.


What Is Considered a Security Issue

  • Leakage of user IP or network metadata upstream
  • Improper isolation between tenants or API keys
  • Accidental logging of raw sensitive prompt content
  • Authentication or authorization bypasses

What Is Not Considered a Security Issue

  • Browser fingerprinting by third-party sites
  • User deanonymization via prompt content itself
  • Threat models outside the documented scope
  • Misconfiguration by downstream integrators

Responsible Disclosure

Please allow reasonable time for investigation and remediation prior to public disclosure.

There aren’t any published security advisories