Skip to content

Security: LTPratham/neurostride

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.x ✅ Yes
< 1.0 ❌ No

Reporting a Vulnerability

Please do NOT open a public GitHub issue for security vulnerabilities.

If you discover a security vulnerability in NeuroStride, please report it responsibly:

  1. Email the maintainer directly (check the GitHub profile for contact info).
  2. Include a clear description of the vulnerability, steps to reproduce, and potential impact.
  3. We will acknowledge your report within 72 hours and aim to patch critical issues within 7 days.

Scope

The following are considered in-scope:

  • Authentication bypass or token forgery
  • SQL injection or data leakage
  • Unsafe handling of patient health data (PHI)
  • Exposed API keys or credentials

Out of Scope

  • Issues in third-party dependencies (please report those upstream)
  • Social engineering attacks
  • Denial-of-service via resource exhaustion

Thank you for helping keep NeuroStride and its users safe.

There aren't any published security advisories