SECURITY.md•3.6 kB
# Security Policy
> Generated by Claude Code
## Privacy Policy
**Privacy Statement:**
This project does not collect, store, or transmit any personal information or user data. All data processing occurs locally on the user's machine, and no information is sent to external servers operated by this project.
**API Usage Disclaimer:**
- All API usage is independent of this project and is the sole responsibility of the user
- Users must comply with the privacy policies and terms of service of their chosen API providers
- This project assumes no responsibility for how users interact with third-party APIs
- Users are solely responsible for reviewing and understanding the privacy implications of their API usage
**User Responsibility:**
Users acknowledge that:
- They must independently assess the security and privacy risks of any API usage
- They bear full responsibility for their use of third-party services
- This project provides tools for API interaction but does not endorse or guarantee any specific API provider
- All risks associated with API usage remain with the user
## Reporting Security Vulnerabilities
If you discover a security vulnerability in this project, please report it responsibly:
1. **Do not** open a public issue
2. Email security concerns to: sepinetam@gamil.com
3. Include a detailed description of the vulnerability
4. Allow reasonable time for response and resolution
## Security Best Practices
- Keep your dependencies updated
- Use secure network connections (HTTPS/TLS)
- Validate all inputs and outputs
- Follow principle of least privilege
- Regular security audits of code and dependencies
## 隐私政策
**隐私声明:**
本项目不收集、存储或传输任何个人信息或用户数据。所有数据处理均在用户本地机器上进行,不会向本项目运营的外部服务器发送任何信息。
**API使用免责声明:**
- 所有API使用均独立于本项目,由用户自行承担责任
- 用户必须遵守所选API提供商的隐私政策和服务条款
- 本项目对用户如何与第三方API交互不承担任何责任
- 用户有责任审查并理解其API使用的隐私影响
**用户责任:**
用户确认:
- 必须独立评估任何API使用的安全和隐私风险
- 对使用第三方服务承担全部责任
- 本项目提供API交互工具,但不认可或保证任何特定API提供商
- 与API使用相关的所有风险由用户承担
## 漏洞报告
如果您发现本项目的安全漏洞,请负责任地进行报告:
1. **不要**公开提交issue
2. 通过邮件报告安全问题:sepinetam@gamil.com
3. 包含漏洞的详细描述
4. 给予合理的响应和解决时间
## 安全最佳实践
- 保持依赖项更新
- 使用安全的网络连接(HTTPS/TLS)
- 验证所有输入和输出
- 遵循最小权限原则
- 定期对代码和依赖项进行安全审计
## 重要免责条款
**本项目明确声明:**
- 不对任何API提供商的行为、政策变更或服务中断负责
- 不对因使用第三方API导致的任何数据泄露、隐私侵犯或其他损害承担责任
- 用户在使用任何API前,应仔细阅读并理解相关服务条款和隐私政策
- 本项目仅为技术工具,不构成对任何API服务的推荐或保证
- 用户应自行判断API使用的合法性、安全性和适用性
**使用风险自负:**
用户明确理解并同意,使用本项目连接的任何第三方API服务所产生的所有风险完全由用户自行承担。本项目开发者不对任何直接、间接、偶然、特殊或后果性损害承担责任。