If you find a security vulnerability, please report it responsibly:
- Do NOT open a public issue
- Use GitHub's Private Vulnerability Reporting
- Include: description, steps to reproduce, potential impact
- Open: https://github.com/file-bricks/SQLiteViewer/security/advisories/new
- Fill out the report form (title, description, severity, affected versions)
- Submit privately (not visible to the public until coordinated disclosure)
- 48-Hour Acknowledgment SLA: Initial receipt acknowledgment within 48 hours.
- 5-Business-Day Triage SLA: Preliminary impact and triage assessment within 5 business days.
If GitHub Private Vulnerability Reporting is unavailable, contact verified maintainers directly:
security@open-bricks.orgsecurity@ellmos.aisupport@lukasgeiger.comlukas@open-bricks.org
- Local database file parsing (
.db,.sqlite,.sqlite3) - SQL query execution and validation
- Atomic export transactions (CSV, structured JSON)
- Offline web companion sandbox
Bitte melden Sie Sicherheitslücken verantwortungsvoll:
- Kein öffentliches Issue erstellen
- GitHub Private Vulnerability Reporting verwenden: https://github.com/file-bricks/SQLiteViewer/security/advisories/new
- Beschreibung, Reproduktionsschritte und mögliche Auswirkungen angeben
- Öffnen Sie: https://github.com/file-bricks/SQLiteViewer/security/advisories/new
- Tragen Sie Titel, Beschreibung, Schweregrad und betroffene Versionen ein
- Reichen Sie die Meldung privat ein (wird erst nach koordinierter Behebung öffentlich)
- 48-Stunden-Eingangsbestätigung: Erste Eingangsbestätigung innerhalb von 48 Stunden.
- 5-Werktage-Triage-Zusage: Erste Schwachstellenbewertung und Priorisierung innerhalb von 5 Werktagen.
Falls GitHub Private Vulnerability Reporting nicht erreichbar ist:
security@open-bricks.orgsecurity@ellmos.aisupport@lukasgeiger.comlukas@open-bricks.org
- Lokaler Dateisystem- und Datenbankzugriff (
.db,.sqlite,.sqlite3) - SQL-Ausführung und Befehlsvalidierung
- Atomare Exporttransaktionen (CSV, JSON)
- Vollständig lokaler Betrieb ohne Netzwerkanbindung