Skip to content

Security: didvc/discord-data-package-explorer-static

Security

SECURITY.md

Security Policy

Supported Versions

This is a static client-side application. The latest version on main / GitHub Pages is supported.

Reporting a Vulnerability

Because this tool processes sensitive personal data entirely in the browser, security issues are important.

Please report vulnerabilities privately by emailing the maintainer or opening a private security advisory on GitHub (preferred when available).

Do not open a public issue for security reports.

We will respond within a reasonable time and coordinate disclosure.

Scope

  • Client-side parsing bugs that could lead to data exposure or crashes on malicious/ crafted packages
  • Supply chain issues in build dependencies
  • Anything that could cause user data to leave the browser unexpectedly

Out of scope: Issues with the upstream Discord data format itself.

There aren't any published security advisories