Skip to content

Security: VoxDroid/Text-Extractor

Security

SECURITY.md

Security Policy

Supported Versions

The Text Extractor project currently supports the latest release (v1.0.0 and above). Security updates and patches will be applied to the main branch and included in subsequent releases. Older versions are not actively supported for security fixes.

Version Supported
v1.0.0+
< 1.0.0 ❌ (End of Support)

Reporting a Vulnerability

If you discover a security vulnerability in Text Extractor, please report it responsibly. We take security seriously and appreciate your efforts to disclose issues in a way that allows us to address them promptly.

How to Report

  • For Sensitive Issues: Email the maintainer directly at [email protected] with a detailed description of the vulnerability. Include steps to reproduce, potential impact, and any suggested fixes if available. Do not disclose sensitive vulnerabilities publicly (e.g., in GitHub issues) until they are resolved.
  • For Non-Sensitive Issues: Use the Security Report issue template on the Issues page. Provide a clear description, steps to reproduce, and any relevant details.

What to Expect

  • You will receive an acknowledgment of your report within 48 hours.
  • The maintainer (@VoxDroid) will investigate the issue and work with you to validate the vulnerability.
  • If the vulnerability is confirmed, we will develop a fix and release it in a new version as soon as possible.
  • You will be credited for your discovery (unless you prefer to remain anonymous) in the release notes or a security advisory.
  • If the report is declined (e.g., not a valid vulnerability), we will provide a clear explanation.

Guidelines

  • Do not exploit vulnerabilities in a way that harms users or the project (e.g., excessive testing or public disclosure).
  • Do not access or modify data that does not belong to you.
  • Provide sufficient detail to help us reproduce and address the issue quickly.

Security Best Practices for Users

  • Always download Text Extractor from the official Releases page or build from the source code in the official repository.
  • Keep your Python environment and dependencies up to date (pip install -r requirements.txt --upgrade).
  • Enable automatic update checks in the app to stay informed about new releases.
  • Report any suspicious behavior or unexpected app activity via the above channels.

Contact

For questions about this security policy or to follow up on a report, email [email protected].

Thank you for helping keep Text Extractor secure!


Developed by VoxDroid
GitHub | Ko-fi


There aren’t any published security advisories