Skip to content

Security: hectorlizard/GLTFQuickLook

Security

SECURITY.md

Security Policy

Supported Version

Security fixes are applied to the latest modern App Extension release. The legacy .qlgenerator is retained for historical use and is not actively maintained.

Reporting a Vulnerability

Please use GitHub's private Report a vulnerability form in the Security tab of this repository. Do not attach private or licensed 3D assets to a public issue.

GLTFQuickLook parses untrusted model files inside macOS Quick Look processes. A report should include the affected release, macOS version, reproduction steps, and a minimal redistributable test model when possible.

There aren't any published security advisories