Skip to content

Security: PocketLLM/pocketllm-lite

Security

SECURITY.md

Security Policy 🛡️

Reporting a Vulnerability

We take the security of PocketLLM Lite seriously. If you discover a security vulnerability within this project, please do not open a public issue. Instead, please report it privately.

How to Report

Please send an email to prashantc592114@gmail.com (replace with your actual email) with the following details:

  • Type of vulnerability (e.g., SQL injection, Buffer overflow).
  • Steps to reproduce the issue.
  • Potential impact of the vulnerability.
  • Any suggested fixes (if available).

We will acknowledge your report within 48 hours and provide a timeline for a fix.

Security Practices

  • Local Storage: All data is stored in the device's sandbox.
  • No Cloud Sync: We do not send your chat history to any external servers.
  • Dependency Audits: we regularly update and audit our dependencies to minimize supply chain risks.

Thank you for helping keep the community safe!

There aren't any published security advisories