Skip to content

Security: leochena/kill3

Security

SECURITY.md

Security

What this project intentionally is not

  • Not a default global content-moderation engine
  • Not a guarantee of counterparty honesty — use small trials, meetup, portable reviews
  • Not an escrow/payment institution

Please report

  • Validation bypass (e.g. platform_fee / boost accepted)
  • Path traversal / oversized payload issues in the reference server
  • Signature interoperability bugs

Use GitHub Issues. Do not paste private keys or live payment credentials.

Out of scope (will not ship in mainline)

  • Scraping or bypassing third-party commercial apps’ technical controls
  • Trademark / official-client impersonation
  • Features whose primary purpose is inducing breach of third-party contracts
  • Attacks against third parties

Security research must follow applicable law and authorization.

Legal / IP notices

Open a GitHub Issue titled [LEGAL] with rights proof and URLs.
See docs/legal-notice.md.

Liability

Use at your own risk. Authors are not trade parties. See DISCLAIMER.md and LICENSE.

There aren't any published security advisories