Skip to content

Security: mrdulasolutions/streamdeck

Security

SECURITY.md

Security Policy

Supported versions

This is an early-stage open-source project. We currently support security fixes on the latest main branch only.

If you are embedding StreamDeck into a commercial product and need longer-term support, please open an issue to discuss your requirements.

Reporting a vulnerability

If you believe you have found a security vulnerability in StreamDeck, please do not open a public GitHub issue.

Instead, email:

  • Primary contact: matt@mrdula.solutions

Please include the following details if possible:

  • A description of the vulnerability and its impact
  • Steps to reproduce (or a proof-of-concept)
  • Any relevant logs or screenshots
  • Your suggested fix or mitigation (if you have one)

We will:

  1. Acknowledge receipt of your report within 3 business days
  2. Investigate and validate the issue
  3. Coordinate a fix and release
  4. Credit you in the changelog or security notes (unless you prefer to remain anonymous)

Scope

This policy covers:

  • The code in this repository (mentra-stream-deck)
  • Configuration and docs in the /docs folder

It does not cover:

  • MentraOS itself, the @mentra/sdk, or Mentra Cloud infrastructure
    • For those issues, please contact the Mentra team via their official channels.

There aren’t any published security advisories