ADS-B TUI takes security seriously. As an application that handles aviation data and network communications, we are committed to ensuring the security and privacy of our users.
If you discover a security vulnerability, please report it responsibly:
- Email: security@j4v3l.dev
- GitHub Security Advisories: Report privately
Do not create public issues for security vulnerabilities.
When reporting a security issue, please include:
- A clear description of the vulnerability
- Steps to reproduce the issue
- Potential impact and severity
- Any suggested fixes or mitigations
- Your contact information for follow-up
- Initial Response: Within 48 hours
- Vulnerability Assessment: Within 7 days
- Fix Development: Within 30 days for critical issues
- Public Disclosure: After fix is deployed and tested
- ADS-B TUI communicates with ADS-B data sources over HTTP/HTTPS
- Always use HTTPS when possible
- Be aware of data transmission over public networks
- Aircraft data may contain sensitive information
- ADS-B TUI does not store or transmit personal data
- Local data storage is minimal and configurable
- We regularly audit our dependencies for security vulnerabilities
- Updates are applied promptly when security issues are discovered
- See our dependency audit workflow
- Download releases only from official sources (GitHub Releases)
- Verify checksums when available
- Keep your system and dependencies updated
- Use strong, unique passwords for any authenticated services
- Limit network access to trusted ADS-B data sources
- Regularly review and update your configuration
- Only connect to trusted ADS-B receivers
- Be aware of data authenticity and integrity
- Consider local network security when exposing ADS-B receivers
- ADS-B TUI is designed for personal use
- Commercial use may require additional security considerations
- Monitor system resources when running continuously
Security updates will be:
- Released as soon as possible after verification
- Documented in release notes
- Communicated through GitHub releases
- Marked with appropriate security advisories
We appreciate security researchers who help make ADS-B TUI safer. With permission, we'll acknowledge your contribution in our security hall of fame.
For security-related questions or concerns:
- Security Issues: security@j4v3l.dev
- General Security Questions: Create a discussion in GitHub Discussions
This security policy may be updated as needed. Significant changes will be communicated through:
- GitHub releases
- Repository announcements
- Direct communication to security reporters
Last Updated: February 1, 2026