Please report security or privacy issues privately through GitHub’s security advisory feature rather than opening a public issue. Do not include real health data, device identifiers, credentials, or raw private captures in the report unless strictly necessary and explicitly agreed.
Relevant concerns include:
- unsafe or uncontrolled BLE writes;
- accidental disclosure of profile or health information;
- incorrect decoding that could silently corrupt health records;
- duplicate or misleading Apple Health entries in a future implementation; and
- repository files containing proprietary packages or extracted material.
This documentation project does not operate a service and currently ships no client application.