Skip to content

Security: YongboYu/python-project-template

SECURITY.md

Security Policy

These repositories are research-focused and maintained on a best-effort basis.


Reporting a Vulnerability

Please do not open a public issue for security vulnerabilities.

Preferred:

  • Use GitHub Private Vulnerability Reporting (Security → Advisories → Report a vulnerability)

Alternative:

Please include:

  • Affected repository and branch/commit (if known)
  • Description of the issue and impact
  • Steps to reproduce (or minimal PoC)
  • Suggested mitigation (optional)

Response Expectations

We aim to acknowledge reports within 5 business days.

We support coordinated disclosure and will work with you on a responsible fix.


Supported Versions

Security fixes apply to:

  • The default branch (e.g., main)
  • The latest tagged release (if applicable)

Older snapshots and forks are not supported.


Safe Harbor

We will not pursue legal action against researchers who:

  • Act in good faith
  • Avoid privacy violations and service disruption
  • Follow this policy

There aren't any published security advisories