Skip to content

Security: dan-sherwin/DevLogBus

Security

SECURITY.md

Security Policy

DevLogBus is a local-first development tool. It does not provide authentication, authorization, retention controls, hosted ingest, or internet-facing security boundaries.

Read Security And Privacy before exposing listeners beyond loopback or publishing browser records from sensitive workflows.

Reporting Security Issues

Do not open public issues containing secrets, private logs, customer data, or vulnerability details that need coordinated disclosure.

Until a formal disclosure address is published, use a private contact path with the project maintainer and include:

  • affected version or commit
  • operating system and architecture
  • reproduction steps
  • expected impact
  • any logs or screenshots with secrets redacted

There aren't any published security advisories