Please do not publish a security vulnerability in a GitHub issue.
Send a private report to the repository owner through GitHub. Include:
- The affected behavior
- Steps to reproduce it
- The impact you believe it has
- A minimal proof of concept, if appropriate
Do not include private photos, live credentials, access tokens, or personal metadata in a report.
DeepFrame is designed to inspect photos locally in the browser. A report is especially important if you discover any behavior that sends an original image or its decoded metadata to an unexpected remote service.