If you discover a security vulnerability in any All Tuner Labs project, please report it responsibly by emailing security@alltuner.com.
Please include:
- A description of the vulnerability
- Steps to reproduce (if applicable)
- The affected project and version
- We will acknowledge your report within 7 days
- We will work with you to understand and resolve the issue
- We will credit you in the fix (unless you prefer to remain anonymous)
This policy applies to all public repositories under the alltuner GitHub organization.
- Vulnerabilities in third-party dependencies (please report those upstream)
- Social engineering attacks
- Denial of service attacks
As a small independent studio, we can't offer a bug bounty program, but we deeply appreciate responsible disclosure and will always credit your contribution.