Skip to content

Security: ankur3-101106/portfolio

Security

SECURITY.md

Security Policy

Supported Versions

The following versions of this project are currently supported with security updates and patches.

Version Supported
Latest
Older Versions

Reporting a Vulnerability

Security is taken seriously for this portfolio and all associated projects.

If you discover a security vulnerability, please report it responsibly and privately.

Please Include

When reporting a vulnerability, include:

  • A clear description of the issue
  • Steps to reproduce the vulnerability
  • Potential impact
  • Screenshots or proof-of-concept (if applicable)
  • Suggested fixes (optional)

Responsible Disclosure

Please do not:

  • Publicly disclose vulnerabilities before they are reviewed
  • Exploit vulnerabilities beyond necessary testing
  • Access data or systems without authorization
  • Perform denial-of-service attacks or destructive testing

Ethical and responsible disclosure helps keep everyone safe.

Response Process

After receiving a report:

  1. The issue will be reviewed and validated
  2. A response will be provided as soon as possible
  3. Fixes or mitigations will be implemented if necessary
  4. Credit may be given to the reporter (if desired)

Scope

This policy applies to:

  • Portfolio website
  • Public repositories
  • Demo applications
  • APIs and backend services associated with the project

Third-party services or dependencies are outside the scope unless directly modified within this project.

Safe Harbor

Security researchers acting in good faith under this policy will not be considered malicious, provided they:

  • Avoid privacy violations
  • Avoid data destruction
  • Report findings responsibly
  • Follow applicable laws and ethical standards

Security Best Practices

This project aims to follow secure development practices including:

  • Dependency monitoring and updates
  • Secure authentication practices
  • Input validation and sanitization
  • HTTPS enforcement
  • Principle of least privilege
  • Secure coding standards

Contact

Please report security issues through the repository’s private contact methods or security advisory features.


Thank you for helping improve the security of this project 🔐

There aren't any published security advisories