Skip to content

Security: g1at/TabCtrl

Security

SECURITY.md

Security Policy

Reporting a vulnerability

Please do not disclose a suspected vulnerability in a public issue. Email dyyxml@gmail.com with:

  • the affected TabCtrl version;
  • reproduction steps or a minimal proof of concept;
  • the expected and observed behavior;
  • any suggested mitigation.

请不要在公开 Issue 中披露疑似漏洞。请发送邮件至 dyyxml@gmail.com,并附上受影响版本、复现步骤、预期与实际行为,以及可选的修复建议。

TabCtrl handles model credentials and can operate browser pages, so reports involving credential exposure, approval bypasses, navigation policy bypasses, task-tab isolation, native messaging, or unintended data transmission are especially important.

There aren't any published security advisories