Security updates are provided for the latest stable release.
| Version | Supported |
|---|---|
| 1.0.x | ✅ |
| < 1.0 | ❌ |
If you discover a security vulnerability, please report it directly by opening a GitHub Issue.
How to report:
- Open an Issue: Navigate to the Issues tab and describe the vulnerability.
- Response: You can expect a response within 48 hours.
- Process: Once the vulnerability is confirmed, a patch will be released and you will be credited.
Z.ai Monitor stores your API token locally on your machine (%APPDATA%/ZaiMonitor/config.json).
- Never share this configuration file with others.
- Ensure your token is hidden or blurred when taking screenshots.
- The application does not send your token to any third-party servers; it only communicates directly with the official Z.ai API endpoints.