Skip to content

Security: RunAnyDev/devkit

Security

SECURITY.md

Security Policy

Supported versions

Security fixes target the latest version on the main branch.

Reporting a vulnerability

Please report vulnerabilities privately by contacting the maintainers through GitHub. Do not open a public issue for security reports.

Include:

  • Affected feature or URL.
  • Reproduction steps.
  • Expected and actual impact.
  • Any suggested fix, if available.

Scope

DevKit runs entirely in the browser and should not require users to submit data to a backend. Treat any accidental credential exposure, unsafe parsing behavior, dependency risk, or cross-site scripting issue as security-sensitive.

There aren't any published security advisories