Skip to content

Security: omicverse/omicos

Security

SECURITY.md

Security Policy / 安全策略

Reporting a vulnerability

If you believe you have found a security vulnerability in omicOS, please report it privately — do not open a public GitHub issue, and do not include exploit details in any public channel.

Contact us through the support channel on omicos.cn (or in-app support) and mark the message as a security report. Please include:

  • a description of the issue and its potential impact,
  • the affected component and version (omicos --version, or the desktop app / web UI version),
  • clear steps to reproduce, and
  • any relevant logs or proof-of-concept (kept private).

We will acknowledge your report, investigate, and keep you updated on remediation.

Supported versions

omicOS updates silently to the latest release. Please make sure you are on the latest kernel, web UI, and desktop version before reporting — see the changelogs. Fixes ship in new releases rather than as patches to older versions.


报告安全问题

如果你发现了 omicOS 的安全漏洞,请私下报告——请勿在公开的 GitHub issue 中提交, 也不要在任何公开渠道透露利用细节。

请通过 omicos.cn 上的客服渠道(或应用内客服)联系我们,并标注为 安全报告。请尽量包含:受影响的组件与版本(omicos --version,或桌面端 / 网页端版本号)、 问题描述与潜在影响、复现步骤,以及相关日志或 PoC(仅私下提供)。

我们会确认收到、进行调查,并向你同步修复进展。修复会随新版本发布,而非对旧版本单独打补丁。

There aren't any published security advisories