Skip to content

Security: Sarmkadan/api-key-gateway

Security

.github/SECURITY.md

Security Policy

Supported Versions

Version Status Supported
v2.0.x Yes
v1.x ⚠️ Security fixes only

Reporting a Vulnerability

If you discover a security vulnerability in this project, please report it via email to:

rutova2@gmail.com

Please include:

  • A description of the vulnerability
  • Steps to reproduce or exploit
  • Any relevant code, configuration, or environment details
  • Your proposed fix (optional but appreciated)

We will acknowledge receipt within 3 business days and work to release a fix within 14 days of confirmation.

Security Best Practices

  • Rotate API keys regularly
  • Use strong key generation methods
  • Monitor usage patterns for suspicious activity
  • Keep this gateway updated to the latest supported version
  • Validate all inputs and sanitize outputs
  • Use HTTPS in production deployments
  • Implement proper rate limiting and access controls

There aren't any published security advisories