Skip to content

Security: RiptideStar/attendance-location-for-groups

Security

SECURITY.md

Security Policy

Supported Versions

We maintain the latest main branch. Report vulnerabilities against main.

Reporting a Vulnerability

Please report security issues privately. Do not create a public issue.

  1. Open a security advisory draft in GitHub (Security > Advisories), or
  2. Email the maintainers listed in the repository.

We will acknowledge receipt within 72 hours and work on a fix.

Scope

  • Secrets exposure, authentication bypass, privilege escalation
  • Injection, XSS, CSRF, SSRF
  • Insecure defaults and misconfigurations

Out of Scope

  • Denial of service without a clear fix
  • Issues requiring unrealistic preconditions

There aren't any published security advisories