# Local Test, https://local-test.app # # If you have found a security problem in Local Test, the desktop app or this # site, please tell me. I would much rather hear it from you than from someone # who found it later. # # Local Test serves folders on localhost and, when you ask it to, on your local # network. Anything that lets a page or a device reach a file it should not, or # lets a project's contents escape the folder it was given, is worth reporting. # So is anything to do with the API keys and access tokens the app stores. # # The Policy line below leads to the whole of it: what is in scope, what to # expect, and what this project does NOT claim about the software it hands you. # # There is deliberately no Encryption line. There is no PGP key for this # project, and pointing at one nobody reads the mailbox of would be worse than # pointing at nothing: a report would sit encrypted and unopened. If a finding # is sensitive enough that plain email bothers you, say so in two lines and # another channel will be arranged. The policy page says the same. Contact: mailto:hello@graysonanderson.com Expires: 2027-08-27T00:00:00.000Z Policy: https://local-test.app/security Preferred-Languages: en Canonical: https://local-test.app/.well-known/security.txt Canonical: https://local-test.com/.well-known/security.txt