Skip to content

Security: saadkhalidkhan/Expense-Manager

Security

SECURITY.md

Security Policy

Supported versions

Version Supported
1.0.x

Reporting a vulnerability

If you discover a security issue, please do not open a public GitHub issue with exploit details.

Instead:

  1. Email ranasaad0799@gmail.com with a description of the issue.
  2. Include steps to reproduce and any relevant logs (redact personal data).
  3. Allow reasonable time for a fix before public disclosure.

We will acknowledge your report and work on a remediation plan. Thank you for helping keep users safe.

Scope

Reports are appreciated for issues such as:

  • Unauthorized access to local transaction data
  • Insecure export or sharing flows
  • Hardcoded secrets or credentials in the repository
  • Dependency vulnerabilities with a clear impact on this app

General feature requests and non-security bugs should use GitHub Issues.

There aren't any published security advisories