Skip to content

Security: EveryInc/garbage-man

Security

SECURITY.md

Security and support status

Email Cleaner is experimental open-source software provided as-is. It is not an actively supported product. The maintainers do not promise maintenance, security monitoring, vulnerability response, fixes, updates, or response times. Use it entirely at your own risk.

The project is designed so mailbox inventory, review decisions, and generated rules remain on the user's machine. Runtime data is stored in .mailroom/, which is ignored by Git. These design choices are not a warranty or security guarantee.

Never paste email passwords, app passwords, OAuth tokens, IMAP credentials, or real mailbox data into an AI conversation, issue, pull request, log, screenshot, test fixture, or commit. Configure credentials in your own local environment and keep provider access read-only during inventory.

This project does not offer a private vulnerability-reporting program or a monitored security contact. Public issues may be used for sanitized discussion, but must not contain credentials, personal data, mailbox contents, or exploit details that would expose users. Filing an issue does not create an expectation that it will be investigated or fixed.

See the MIT License for the full warranty and liability disclaimer.

There aren't any published security advisories