Skip to content

Security: hX1-dev/worldweft

Security

SECURITY.md

Security Policy

Worldweft is an alpha reference implementation. Do not place production secrets in the repository, in Godot scenes, or in screenshots.

Reporting a Vulnerability

Please do not open a public issue for a suspected vulnerability. Use GitHub private vulnerability reporting when it is enabled for this repository. Until then, contact the maintainer through the GitHub profile associated with the repository and include reproduction steps, affected files, and impact.

Reports involving bridge authentication, action authorization, data leakage, or an LLM bypass of durable-world rules are especially important.

There aren't any published security advisories