If you discover a security issue in BongoBT:
- Do NOT open a public GitHub issue.
- Instead, email us at jubayer@bongotech.xyz
- Include as much detail as possible:
- Steps to reproduce
- Affected Android version(s) and device(s)
- Example code/logs
- Potential impact
We will:
- Acknowledge receipt within 72 hours.
- Investigate and confirm the issue.
- Work on a patch and release a fixed version.
- Credit you in the changelog (if you want).
We ask that you give us a reasonable time to fix the issue before publicly disclosing it.
We greatly appreciate researchers and developers who help keep BongoBT secure.