Skip to content

Security: ItsWendell/WakeBridge

Security

SECURITY.md

Security Policy

Supported versions

WakeBridge is currently a pre-1.0 open-source beta. Security fixes are applied to the latest revision on the default branch.

Reporting a vulnerability

Please do not open a public issue for vulnerabilities involving microphone privacy, global keyboard-event emission, permissions, code signing, dependency replacement, or arbitrary file access.

Until a dedicated private reporting address is published, use GitHub's private security advisory feature on the repository. Include reproduction steps, affected macOS version, WakeBridge revision, and whether the issue requires Microphone or Accessibility permission. Never attach microphone recordings or credentials.

Security boundaries

WakeBridge:

  • processes microphone samples locally
  • does not retain or upload audio
  • emits only the explicitly configured ChatGPT Voice shortcut
  • requires at least two shortcut modifiers
  • disables shortcut emission throughout Safe Test
  • does not patch or inject into ChatGPT

There aren't any published security advisories