Skip to content

Security: bylickilabs/AURORA-Media-Engine

Security

SECURITY.md

πŸ” Security Policy β€” AURORA Media Engine

πŸ“Œ Supported Versions

Security patches are provided only for the latest stable release:

Version Security Support
1.0.x βœ” Supported
0.x ❌ Unsupported



🚨 Reporting a Vulnerability

If you discover a vulnerability or believe you have found a security issue,

  • please report it privately and confidentially.

Contact:

πŸ“§ Security Contact

To support an efficient investigation, please include when possible:

  • Description of the vulnerability
  • Steps to reproduce the issue
  • Screenshots or log snippets
  • Severity and potential impact
  • Your contact for follow-up communication

You will receive a confirmation within 48 hours.




πŸ” Security Assessment Process

All vulnerability reports are carefully evaluated:

Severity Example Impact
πŸ”΄ Critical Remote code execution, data breach, bypass of security controls
🟠 High Tampering or unauthorized access to user data
🟑 Medium Feature degradation or limited access risks
🟒 Low Minor UI or non-security defects

Once verified, the process includes:

  • Patch development
  • Testing & validation
  • Release update
  • Coordinated disclosure



🀝 Responsible Disclosure

We kindly ask security researchers to avoid public disclosure

  • until a patch has been published and users are protected.

Your responsible behavior is highly appreciated and helps us improve the safety of all users.




πŸ”§ Security Best Practices for Users

To mitigate risks, we recommend:

  • Always use the latest version
  • Install VLC from official and trusted sources
  • Avoid untrusted media files
  • Keep graphics drivers and OS fully updated



Β© Legal Notice

Β© Thorsten Bylicki β€” Β© BYLICKILABS.
All rights reserved.

LICENSE


πŸ›‘ Security is mission-critical.

  • Thank you for supporting the protection and integrity of the AURORA Media Engine.

There aren’t any published security advisories