> For the complete documentation index, see [llms.txt](https://policies.recaptime.dev/llms.txt). Markdown versions of documentation pages are available by appending `.md` to page URLs; this page is available as [Markdown](https://policies.recaptime.dev/general/security-policy.md).

# Security policy

{% hint style="warning" %}
**We're working on this page at the moment.** This is not the final version at the moment, but we're working hard on ironing out possible issues and covering edge cases behind the scenes.

If you see this notice at the homepage, that means the entire policies site is being worked on right now but we publish working drafts to production to allow us to collect feedback early on during policy developments.
{% endhint %}

### Reporting security issues

Email `security@recaptime.dev` with details about the security issue in question.

If you are also submitting security patches for our projects, we recommend emailing the patchsets to `~recaptime-dev/security@lists.sr.ht` or using confidential merge requests in GitLab SaaS.

### In scope vs out of scope

We consider the following as in-scope of our security policy
