Skip to content

Security: NPX2218/deks

Security

SECURITY.md

Security Policy

Reporting a vulnerability

If you discover a security vulnerability in Deks, please report it responsibly.

Do not open a public issue. Instead, email security@YOUR_DOMAIN.com with:

  • A description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

We'll respond within 48 hours and work with you to address the issue before any public disclosure.

Scope

Deks uses the macOS Accessibility API which requires elevated permissions. We take this seriously:

  • Deks never transmits data over the network
  • All configuration is stored locally
  • No analytics, telemetry, or crash reporting
  • The app is fully open source for auditing

Supported versions

Version Supported
Latest Yes
< Latest Best effort

There aren’t any published security advisories