Skip to content

Security: henderson-01/Alien_Invasion

.github/SECURITY.md

Security Policy

Thank you for helping keep Alien Invasion and its users safe. If you've found a security vulnerability, please report it responsibly.

Reporting a Vulnerability

Please use GitHub's built-in private vulnerability reporting:

  1. Go to the repository's Security tab.
  2. Click Report a vulnerability.
  3. Fill out the form and submit.

This opens a private security advisory visible only to you and the maintainer — no public disclosure until it's fixed.

What to include

To help us triage quickly, please include:

  • A description of the vulnerability and its potential impact.
  • Steps to reproduce it (or a minimal proof of concept).
  • The affected file(s) and version(s) if known.
  • Any suggested mitigation, if you have one.

Response Expectations

  • You'll receive an acknowledgement within 7 days of your report.
  • You may be contacted for more details while the issue is investigated.
  • Once resolved, a fix will be released and a public security advisory will be published.

Scope

This channel is for security vulnerabilities only (e.g. code execution, unsafe deserialization, or malicious dependency issues).

Supported Versions

This project is pre-release and actively developed on main. Security fixes are applied to the main branch; there are currently no long-term supported release versions.

There aren't any published security advisories