Please do not report security vulnerabilities through public GitHub issues, forum posts, or pull requests.
Instead, use one of these private channels:
- Send a private message to the maintainers on our community forum
- Use the contact form on our website
When reporting, please include as much of the following as you can:
- A description of the vulnerability and its potential impact
- Steps to reproduce the issue (a proof of concept is a big plus)
- The affected version(s) of Gladys Assistant and your installation type (Docker, Raspberry Pi, etc.)
- We will acknowledge your report as quickly as possible, usually within a few days.
- We will keep you informed while we investigate and work on a fix.
- Once a fix is released, we will credit you for the discovery (unless you prefer to remain anonymous).
Thank you for helping keep Gladys Assistant and its users safe! 🙏