Vulnerability Disclosure
We take the security of LCXL Remote Desk seriously. Remote desktop technology involves deep access to computer systems, so responsible disclosure matters.
Reporting a Vulnerability
If you discover a security vulnerability, please report it privately rather than opening a public issue. Refer to the SECURITY.md file in the repository for the current reporting channel and process.
Please include:
- A description of the vulnerability and its impact.
- Steps to reproduce.
- Affected version / commit, and environment details.
Scope
This project is in early development. Treat your deployment environment as security-sensitive: ensure your network is secure, restrict access to trusted users, and keep API keys server-side (the design enforces this — see the AI Security Model).
Disclaimer
Remote desktop technology involves deep access to computer systems. The author(s) shall not be held liable for any damages arising from the use of this project.