Skip to content

Vulnerability Disclosure

We take the security of LCXL Remote Desk seriously. Remote desktop technology involves deep access to computer systems, so responsible disclosure matters.

Reporting a Vulnerability

If you discover a security vulnerability, please report it privately rather than opening a public issue. Refer to the SECURITY.md file in the repository for the current reporting channel and process.

Please include:

  • A description of the vulnerability and its impact.
  • Steps to reproduce.
  • Affected version / commit, and environment details.

Scope

This project is in early development. Treat your deployment environment as security-sensitive: ensure your network is secure, restrict access to trusted users, and keep API keys server-side (the design enforces this — see the AI Security Model).

Disclaimer

Remote desktop technology involves deep access to computer systems. The author(s) shall not be held liable for any damages arising from the use of this project.