Skip to content

Security: OximyHQ/sensor

SECURITY.md

Security Policy

Our Approach

Oximy Sensor's source code is open for transparency, audit, and verification. This allows organizations to inspect exactly what runs on their devices—no black boxes.

Supported Versions

Version Supported
Latest release
Previous release
Older releases

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

To report a security vulnerability, please email security@oximy.com.

Include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Any suggested fixes (optional)

Response Timeline

  • Acknowledgment: Within 48 hours
  • Initial assessment: Within 5 business days
  • Resolution timeline: Communicated after assessment

We appreciate responsible disclosure and will credit researchers (if desired) once the issue is resolved.

There aren’t any published security advisories