BridgeNode takes security seriously. If you discover a security vulnerability in any BridgeNode package, please report it privately — do NOT open a public issue.
Report via email: eli.BNx@proton.me
Please include:
- Affected package and version
- Description of the vulnerability
- Steps to reproduce (if possible)
You should receive a response within 3 business days. If the issue is confirmed, a fix will be released as soon as possible.
Only the latest released version of each package is supported with security updates.
BridgeNode packages never require or ship API keys. If you find a hardcoded secret in this repository, treat it as a critical vulnerability.