.github

Security Policy

Supported Versions

Version Supported
x.y.z :white_check_mark:
< x.y.z :x:

Reporting a Vulnerability

Where to Report

You can report security vulnerabilities through any of these channels:

What to Include

When reporting a vulnerability, please include:

Response Timeline

Here’s what you can expect after reporting:

  1. Initial Response: Within [X] business days
  2. Status Update: You will receive updates every [Y] days
  3. Resolution Timeline: We aim to resolve critical issues within [Z] days

Process

  1. Submit your report through one of the channels above
  2. Our security team will acknowledge receipt
  3. We’ll investigate and determine severity
  4. We’ll work on a fix and keep you updated
  5. Once resolved, we’ll:
    • Release a security patch
    • Publish a security advisory
    • Credit you for the discovery (if desired)

Security Update Distribution

Security Best Practices

Contact

Security Team: security-team@your-domain.com Project Lead: project-lead@your-domain.com