Skip to content

Latest commit

 

History

History
27 lines (17 loc) · 595 Bytes

File metadata and controls

27 lines (17 loc) · 595 Bytes

Security Policy

Reporting a vulnerability

Please do not open public issues for potential security vulnerabilities.

Instead, report privately with:

  • A clear description of the issue
  • Steps to reproduce
  • Impact assessment
  • Suggested remediation (if available)

Use the repository contact channel/profile for private disclosure.

Scope

Security reports are especially relevant for:

  • File handling and path traversal
  • Unexpected code execution vectors
  • Dependency-related vulnerabilities

Response targets

  • Initial response: within 7 days
  • Triage decision: within 14 days