Skip to content

Commit 1933fa3

Browse files
satcfdiCopilot
andcommitted
docs: update security policy with current versions and disclosure process
- Update supported versions to 4.9.x and 4.8.x (was 1.0.x) - Replace template placeholders with actual reporting instructions - Add responsible disclosure guidelines with contact email Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com>
1 parent 83e414a commit 1933fa3

1 file changed

Lines changed: 13 additions & 8 deletions

File tree

security.md

Lines changed: 13 additions & 8 deletions
Original file line numberDiff line numberDiff line change
@@ -2,17 +2,22 @@
22

33
## Supported Versions
44

5-
Use this section to tell people about which versions of your project are
6-
currently being supported with security updates.
7-
85
| Version | Supported |
96
| ------- | ------------------ |
10-
| 1.0.x | :white_check_mark: |
7+
| 4.9.x | :white_check_mark: |
8+
| 4.8.x | :white_check_mark: |
9+
| < 4.8 | :x: |
1110

1211
## Reporting a Vulnerability
1312

14-
Use this section to tell people how to report a vulnerability.
13+
If you discover a security vulnerability in this project, please report it responsibly.
14+
15+
**Please do not open a public GitHub issue for security vulnerabilities.**
16+
17+
Instead, send an email to [satcfdi@outlook.com](mailto:satcfdi@outlook.com) with:
18+
19+
- A description of the vulnerability
20+
- Steps to reproduce the issue
21+
- Any potential impact
1522

16-
Tell them where to go, how often they can expect to get an update on a
17-
reported vulnerability, what to expect if the vulnerability is accepted or
18-
declined, etc.
23+
You can expect an initial response within 72 hours. We will work with you to understand and address the issue before any public disclosure.

0 commit comments

Comments
 (0)