Skip to content

Security: VTuberMate/aim-spec

Security

SECURITY.md

Security Policy

This repository contains a format specification and example packages.

What counts as a security issue here

Examples include:

  • path traversal ambiguities
  • unsafe extraction behavior
  • malformed binary handling that could cause silent corruption
  • validator / reader disagreement that could create unsafe package handling

Reporting

If GitHub private security reporting is enabled, please use it for issues that should not be disclosed immediately. Otherwise report security issues to security@vtubermate.com. For non-security repository questions, use hello@vtubermate.com or public GitHub Issues as appropriate.

What to include

  • affected clause(s)
  • concrete package layout or sample manifest
  • expected behavior
  • actual risky behavior
  • whether the issue affects writers, readers, validators, or all three

There aren’t any published security advisories