English · Deutsch
Please do not publish a suspected security vulnerability as an issue, discussion, or pull request. Instead, use GitHub's confidential Private Vulnerability Reporting.
A helpful report includes:
- the affected RootGuard version and component;
- prerequisites and reproducible steps;
- the potential impact;
- a suggested fix, if you have one.
Remove passwords, tokens, public IP addresses, and other personal or confidential data from attachments and logs.
RootGuard is in public release-candidate testing ahead of 1.0. Security fixes are provided for the most recently published release. Older releases do not receive their own backports.
We acknowledge reports on receipt, assess impact and reproducibility, and coordinate a fix and its subsequent release. Please give the project reasonable time for analysis and an update before any public disclosure.