Skip to content

Security: ivan-yurich/Yurich-Connect-Android

Security

SECURITY.md

Security Policy

Reporting

Please report security issues privately by email:

ai@ivan-it.net

Do not open a public GitHub issue for private keys, credentials, subscription links, server configs, or vulnerabilities that could expose users.

Sensitive Data

The project should not store real VPN profiles, UUIDs, passwords, private keys, production configs, or signing keys in git.

Generated Android release files (.apk, .aab) should be uploaded to GitHub Releases instead of being committed to the repository.

Supported Versions

The latest GitHub Release is the supported version.

There aren't any published security advisories