Skip to content

Security: madanimkhitar22-beep/PiStorage

SECURITY.md

Security Policy

Supported Versions

PiStorage is actively maintained and updated. The following versions currently receive security updates:

Version Supported
1.x.x ✅ Active
0.x.x ❌ Deprecated

Reporting a Vulnerability

If you discover a security vulnerability within PiStorage, please do not open a public issue.

Instead, contact the PiStorage security team privately:

Once verified, we’ll work with you to address the issue promptly and responsibly.


Data Encryption & Privacy

  • All files are encrypted client-side using AES-256 before upload.
  • User identity verification uses Pi Network KYC standards.
  • Private keys are stored locally — PiStorage never has access to unencrypted data.
  • Zero-knowledge architecture ensures maximum privacy.

Security Best Practices

We recommend that users:

  1. Never share their private keys or recovery phrases.
  2. Enable two-factor authentication (2FA).
  3. Keep their devices updated with the latest OS and browser versions.
  4. Report any suspicious activity immediately to our security team.

Compliance

PiStorage is compliant with:

  • Pi Network KYC & Privacy Guidelines
  • GDPR and ISO/IEC 27001 security standards
  • End-to-end encryption and zero-knowledge principles

There aren’t any published security advisories