Skip to content

Security: chen86860/easy-complete

SECURITY.md

Security Policy

Supported Versions

Security updates are provided for the latest released version of Easy Complete. Please update to the newest release before reporting an issue that may already have been fixed.

Version Supported
Latest release Yes
Older releases No

Reporting a Vulnerability

Please do not disclose suspected vulnerabilities in a public issue, discussion, or pull request.

Report them privately through GitHub Private Vulnerability Reporting. Include, when possible:

  • A description of the vulnerability and its potential impact.
  • The affected Easy Complete version and macOS version.
  • Reproduction steps or a minimal proof of concept.
  • Relevant logs, crash reports, or screenshots with secrets and personal data removed.
  • Any known mitigations or suggested fixes.

You should receive an acknowledgement within 7 days. After the report is validated, the maintainer will coordinate remediation and disclosure with you. Please allow a reasonable amount of time for a fix to be developed and released before publishing details.

Scope

Reports about the Easy Complete application, bundled command-line tools, shell integrations, input method, update mechanism, website, and release artifacts are in scope. Vulnerabilities in third-party dependencies are also welcome when they have a demonstrated impact on Easy Complete.

General bugs, feature requests, and support questions should be filed through GitHub Issues.

There aren't any published security advisories