Security fixes are developed for the current default branch and, when applicable, the latest published application version. Older builds and development snapshots are not guaranteed to receive security updates.
Do not open a public issue for a suspected vulnerability. Email
thalesmmsradio@gmail.com with the subject Turing Lab security report and
include:
- the affected version, commit, and platform;
- a clear description of the issue and its potential impact;
- reproduction steps or a proof of concept;
- any suggested mitigation; and
- whether the report may be credited publicly.
Do not include active credentials, private user data, or unrelated sensitive information. If a credential was exposed, revoke or rotate it immediately.
The maintainer will validate the report, coordinate remediation, and discuss a safe disclosure timeline when possible. The project does not currently offer a bug bounty or guarantee a response deadline.
General bugs, feature requests, and correctness issues that do not have a security impact should be reported through GitHub Issues.