Please do not report personal graph content through a public GitHub issue.
The application is fully client-side. It does not send pasted AI output to a server, but browser extensions and the device itself remain outside the project's control. Use a trusted browser profile for sensitive material.
Before publishing a fork:
- Search every tracked file and the full Git history for personal data.
- Use only the neutral seed included in
index.html. - Do not rely on a visual hide/filter control as redaction.
- Never commit conversation archives, API keys, cookies, tokens or personal graph exports.
For code vulnerabilities, use GitHub's private vulnerability reporting when it is enabled for the repository.