We actively provide security patches and updates for the following versions of halpradio:
| Version | Supported |
|---|---|
| 0.6.x | ✅ |
| 0.5.x | ✅ |
| 0.4.x | ✅ |
| 0.3.x | ✅ |
| 0.2.x | ✅ |
| 0.1.x | ✅ |
| 0.0.x | ✅ |
| < 0.0.1 | ❌ |
The halpradio team takes the security of our application and users seriously.
If you believe you have discovered a security vulnerability in halpradio:
- Do not create a public issue on GitHub.
- Please disclose the vulnerability responsibly via GitHub Private Vulnerability Reporting or by emailing the project maintainers directly.
- Include detailed steps to reproduce the vulnerability, along with proof-of-concept payload or code if possible.
- We will acknowledge receipt of your report within 48 hours and work with you to release a fix promptly.
- Streaming URLs:
halpradioplays user-provided and community-submitted audio URLs. We recommend streaming over HTTPS whenever possible. - Custom Config: Custom stations are stored locally in
~/.config/halpradio/stations.yaml. Keep this directory with standard user read/write permissions.