Skip to content

Security: 13shivam/mgm

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
0.0.1

Reporting a Vulnerability

We take security seriously. If you discover a security vulnerability, please follow these steps:

1. Do Not Open a Public Issue

Security vulnerabilities should not be disclosed publicly until a fix is available.

2. Report Privately

Send details to the project maintainers via:

  • GitHub Security Advisories (preferred)
  • Email to the repository owner

3. Include Details

Please provide:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)
  • Your contact information

4. Response Timeline

  • Initial Response: Within 48 hours
  • Status Update: Within 7 days
  • Fix Timeline: Depends on severity (critical issues prioritized)

5. Disclosure

Once a fix is available:

  • We'll release a security update
  • Credit will be given to the reporter (unless anonymity is requested)
  • A security advisory will be published

Security Best Practices

When using this application:

  1. Admin Privileges: Only grant when necessary
  2. Updates: Keep the app updated to the latest version
  3. Source: Only download from official sources (GitHub releases)
  4. Review: Check code before running if building from source

Known Security Considerations

  • Application requires admin privileges for full functionality
  • Network monitoring accesses system-level information
  • Security scanning reads system configuration files

These are necessary for the app's functionality and follow macOS security guidelines.

Thank you for helping keep macOS Gateway Monitor secure! 🔒

There aren’t any published security advisories