Security fixes are provided for the latest published version of OpenQuota. Before reporting a problem, check whether it is still present in the latest release.
Please do not open a public issue for security vulnerabilities.
Use GitHub's private vulnerability reporting to report the issue confidentially.
Include:
- The affected OpenQuota version and operating system
- A clear description of the vulnerability and its impact
- Reproduction steps or a proof of concept when available
- Any suggested mitigation
Do not include real credentials, access tokens, or private account data. Reports will be reviewed privately, and a fix or mitigation will be coordinated before public disclosure when the issue is confirmed.