Skip to content

Security: ky776/opportunity-radar

Security

SECURITY.md

Security policy

Credentials

Never commit API tokens, cookies, OAuth client secrets, local certificate keys, or credential files. Product Hunt credentials are read from environment variables or from a local file outside the repository at:

~/.config/opportunity-radar/product-hunt.env

The file should be readable only by its owner.

Reporting a vulnerability

Please do not open a public issue containing credentials, private datasets, or an exploitable proof of concept. Contact the repository maintainer privately through the security contact configured on the GitHub repository.

Public-data caution

This project processes public sources, but public availability does not automatically grant redistribution rights. Keep source URLs and metadata; avoid committing full restricted articles, personal data, or bulk third-party datasets.

There aren't any published security advisories