openSave has broad permissions because it captures resources from the active browser tab. Security issues involving the Chrome extension, archive output, service-worker replay, or unintended network access are in scope.
Please report vulnerabilities privately through GitHub Security Advisories for this repository. Include:
- Impact and affected version.
- Reproduction steps.
- A proof of concept that does not access third-party data.
- Suggested remediation, if available.
Do not publish exploit details until a fix is available.
The current main branch is the supported development version.