Skip to content

Security: Kiloiot/.github

Security

SECURITY.md

Security

Reporting a vulnerability

Email info@kiloiot.de. Please do not open a public issue for a security problem.

It helps if you can include the affected product and version, what the issue is, how to reproduce it, and the impact you think it has.

Please do not include credentials, private keys, customer data, or other sensitive production data in your first message. If sensitive evidence is needed, we will arrange a restricted channel for it.

Please give us a reasonable opportunity to fix the issue before disclosing it publicly.

Which company this reaches

This address reaches Kilo (Chirp USA, LLC d/b/a Kilo), which operates the platform and its services. Reports about Kilo hardware, distributed by Kilo IoT GmbH trading as Kilo Electronics, go to the same address and are routed to the right company. The two are separate companies sharing one intake point.

What this policy does not promise

This file does not set an acknowledgement time, a triage time, a remediation time, a supported-version period, or a disclosure credit. Those commitments are published only once they have been approved, and they are absent here because they are not yet in place.

There aren't any published security advisories