Skip to content

Security: scraly/developers-conferences-agenda

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability, please report it privately and do not open a public issue.

Please include:

  • A clear description of the issue
  • Steps to reproduce
  • Impact assessment
  • Suggested fix (if any)

Disclosure Process

  • As this project is maintained by a single maintainer, response times may vary.
  • We aim to acknowledge receipt within 10 business days.
  • We aim to provide an initial assessment within 30 business days.
  • We aim to provide a fix or mitigation within 90 days when possible.
  • Coordinated public disclosure is planned after a fix is available.

Supported Scope

This policy applies to the source code and workflows in this repository.

Out of Scope

  • Vulnerabilities in third-party services outside this repository
  • Social engineering or phishing tests against contributors

Thank you for helping keep this project secure.

There aren't any published security advisories