Security reports are accepted for the current master branch and the live website at:
https://ot.itisuniqueofficial.com/
Do not open a public issue for sensitive security reports.
Use GitHub Discussions to request a private reporting channel:
https://github.com/itisuniqueofficial-gh/online-tools/discussions
Include:
- A clear description of the vulnerability
- Affected page or file
- Steps to reproduce
- Browser and device details if relevant
- Potential impact
- Suggested fix if available
In scope:
- Cross-site scripting risks
- Unsafe dependency or CDN usage
- Incorrect handling of user-supplied input
- Security-impacting deployment or metadata issues
Out of scope:
- General SEO suggestions without security impact
- Denial-of-service testing against the live website
- Reports requiring access to accounts or systems not owned by this project
Maintainers will review valid reports, confirm impact where possible, and prioritize fixes based on severity.