Skip to content

Security: GeniusBotsLab/whatsapp-core-api

Security

SECURITY.md

Security Policy

Public repository boundary

This repository is public product documentation only. Never publish or submit:

  • API keys, access tokens, passwords, private keys, certificates, session data, QR codes, cookies, or .env files;
  • WhatsApp account data, phone lists, recipient data, message content, customer data, or personal data;
  • server addresses, production configuration, logs, backups, database dumps, or private infrastructure details;
  • commercial source code or other private delivery materials.

Reporting security issues

Do not disclose vulnerabilities or sensitive findings through a public Issue. Contact the seller through the public channels in the README and provide only the minimum information needed for safe triage.

Responsible disclosure

Do not share account access, private APIs, bypass methods, or personal data in this repository.

There aren't any published security advisories