| Version | Supported |
|---|---|
| 1.0.x | ✅ |
We take security seriously. If you discover a security vulnerability, please follow these steps:
- Do NOT open a public issue
- Email security concerns to: [create appropriate email]
- Include detailed information about the vulnerability
- Allow time for us to address the issue before public disclosure
- All conversations remain local between your browser and Ollama
- No data is sent to external services
- Configuration stored locally in browser storage only
- Use HTTPS in production environments
- Ensure Ollama endpoint is properly secured
- Consider firewall rules for Ollama access
- Keep your browser updated
- Be cautious with browser extensions that might interfere
- Use reputable browsers with security updates
- Use HTTPS when possible
- Keep Ollama updated
- Secure your Ollama endpoint appropriately
- Don't share sensitive information in conversations
- Follow secure coding practices
- Validate all inputs
- Sanitize HTML content
- Use Content Security Policy headers
Thank you for helping keep CR Chatbot secure!