The security of AuditForge AI is taken seriously. If you discover a security vulnerability, privacy issue, or any behavior that could negatively impact users, please report it privately.
Please do not disclose security vulnerabilities publicly before they have been investigated and addressed.
Send an email to:
Please include the following information where possible:
- A description of the vulnerability.
- Steps required to reproduce the issue.
- The affected page, feature, or component.
- Screenshots, proof-of-concept code, or logs, if applicable.
- The potential impact of the issue.
- Reports will be acknowledged as soon as reasonably possible.
- Valid reports will be investigated and prioritized based on severity.
- If additional information is required, you may be contacted using the details you provide.
- Confirmed vulnerabilities will be addressed in future updates to AuditForge AI.
AuditForge AI does not currently maintain multiple release branches.
Security fixes are applied to the latest version available in this repository and deployed through GitHub Pages.
This policy applies to the AuditForge AI codebase and its official deployment:
Third-party services, browsers, extensions, or external websites are outside the scope of this policy.
Please provide a reasonable amount of time to investigate and resolve reported issues before making any public disclosure.
Thank you for helping keep AuditForge AI secure.