Security
Report security issues.
BeforePaste handles sensitive local clipboard workflows. Reports that affect local redaction, the Safe Paste action, installer integrity, update safety, or unexpected clipboard persistence are treated as security issues.
Report a vulnerability
Email security@beforepaste.com with a concise description, affected version or commit, reproduction steps, and expected impact.
In scope
- Clipboard content exposure outside the user's local machine.
- Incorrect Safe Paste behavior that exposes raw secrets during a requested redacted paste.
- Installer, release, or update-channel integrity issues.
- Unexpected persistence of clipboard contents.
Out of scope
- Generic AI model behavior after redacted content has been pasted.
- Issues that require a compromised operating system account.
- Denial-of-service reports without a security impact.