Audio-V is currently a prerelease project. Security fixes apply to the latest source and latest published prerelease only.
Use GitHub’s private vulnerability-reporting feature for the official DRAZY/Audio-V repository. Do not open a public issue containing exploit details, private audio, local paths, credentials, signing material, or unpublished reports.
Include:
- affected Audio-V and Oracle Engine versions;
- operating system and architecture;
- reproducible steps using a redistributable fixture;
- expected and observed security impact; and
- the privacy-safe diagnostic export when relevant.
Do not include source audio unless You have the right to redistribute it and it is necessary to reproduce the issue.
The maintainer will acknowledge a complete report when repository monitoring is active, assess severity, and coordinate a fix and disclosure timeline. This policy does not promise a paid bounty.