Skip to content

Security: terzastella/opencode-stats

SECURITY.md

Security Policy

Supported Versions

Only the latest release (see Releases) receives security fixes. Older versions are not supported.

Reporting a Vulnerability

Do NOT open a public issue. Please report privately via private vulnerability reporting, including steps to reproduce, impact, and the app version. You will receive a response as soon as possible.

Scope Notes

This is a local-only desktop app: it reads the user's OpenCode database read-only and makes no external network calls at runtime. Out of scope: the bundled demo/test data, and the unsigned Windows binaries (expected and documented in the README).


Informativa sulla sicurezza

Solo l'ultima release riceve fix di sicurezza. Non aprire issue pubbliche per vulnerabilità: usa la segnalazione privata, indicando passi per riprodurre, impatto e versione dell'app.

There aren't any published security advisories