Currently, only the latest version of the extension receives security updates. We strongly recommend that users keep the extension updated through their browser's official store (Edge Add-ons or Firefox Add-ons).
| Version | Supported |
|---|---|
| 3.3.x | ✅ |
| < 3.3.0 | ❌ |
Because Fluent New Tab uses a local-first, privacy-focused approach, we take the security of local data and browser code execution very seriously.
Please DO NOT report security vulnerabilities by opening a public Issue.
To report a security vulnerability, please choose one of the following options:
- [Recommended] GitHub Private Vulnerability Reporting: Go to the "Security" tab of this repository, click on "Advisories", and then "Report a vulnerability". This opens a private communication channel directly with the maintainers.
- Email: Send an email directly to
snowmint.dev@gmail.comwith the details of the vulnerability, steps to reproduce (Proof of Concept), and the expected impact.
You should receive a confirmation of receipt within 48 hours. We will do our best to evaluate the issue, develop a fix, and release an update to the stores as quickly as possible.