Skip to content

Security: punamide/punamide-downloads

Security

SECURITY.md

Security Policy

PunamIDE is early alpha software. Security reports are taken seriously.

Responsible Disclosure

If you discover a security issue, please do not post it publicly in GitHub Issues, Discord, or social media.

Instead, report it privately first.

Contact

Use one of the following:

If a dedicated security email is added later, this document will be updated.

What to Include

Please include:

  • A clear description of the issue.
  • Steps to reproduce.
  • Affected version.
  • Operating system.
  • Potential impact.
  • Screenshots or logs if safe to share.

Do Not Publicly Disclose

Please do not publicly disclose:

  • Remote code execution vulnerabilities.
  • Token or secret leakage.
  • Authentication or authorization bypasses.
  • Installer tampering risks.
  • Crash reports containing sensitive user data.
  • Any exploit that could harm alpha users.

Security Reporting Workflow

  1. Report privately.
  2. PunamIDE maintainers review and reproduce.
  3. A fix is prepared.
  4. A patched release is published.
  5. Public disclosure may happen after users have a reasonable chance to update.

Thank you for helping keep PunamIDE users safe.

There aren't any published security advisories