We currently only support the latest version of Quota Tracker. Please ensure you are running the most recent release or the latest main branch before reporting an issue.
| Version | Supported |
|---|---|
| Latest | ✅ |
| Older | ❌ |
Since Quota Tracker is a local-first, privacy-focused daemon that parses potentially sensitive local log files, we take security vulnerabilities—especially those related to local privilege escalation, unauthorized local data exposure, or path traversal—very seriously.
Please do not report security vulnerabilities through public GitHub issues.
Instead, please report them responsibly by creating a private security advisory on the GitHub repository or by contacting the repository owner directly.
- A detailed description of the vulnerability.
- Step-by-step instructions to reproduce the issue.
- The version(s) of Quota Tracker affected.
- Your operating system and environment details (e.g., NixOS, systemd version).
- Any potential impact on the user's local system or privacy.
We will endeavor to respond to your report as quickly as possible and keep you informed of our progress towards a fix. Thank you for helping keep this project secure!