SocialGuard-RL is a research repository that generates synthetic moderation scenarios. Security reports may concern the FastAPI server, optional bearer-token protection, dependency handling, container configuration, credential exposure, or unsafe data handling.
The project is not intended to process real user records or production moderation queues. Reports involving real personal data should not include that data in an issue or pull request.
Please report suspected vulnerabilities privately to the repository owner through GitHub’s private security reporting channel when it is available. If private vulnerability reporting is not enabled, contact the owner through a private GitHub message and include the repository name, affected file or endpoint, reproduction steps, impact, and any suggested mitigation.
Do not publish an unpatched vulnerability, access token, API key, personal data, or complete exploit details in a public issue.
Only the default branch is actively maintained. Older commits and experimental branches may not receive security fixes.
The maintainer will determine the appropriate disclosure timeline after confirming the report, based on severity, exploitability, affected users, and whether a fix is available. No response-time or remediation-time guarantee is made.