Skip to content
This repository was archived by the owner on Jul 24, 2026. It is now read-only.

Security: dignite-projects/abp-notifications

Security

SECURITY.md

Security Policy

Supported versions

Version Supported
10.0.x-preview ✅ (pre-release; see CONTRIBUTING → Versioning and releases)

This project has not yet reached a stable release. Once 10.0.0 (or later) ships, this table will track the currently-supported minor line(s) against the ABP Framework major version each targets.

Reporting a vulnerability

Please do not report security vulnerabilities through public GitHub issues.

Instead, use GitHub's private vulnerability reporting for this repository:

  1. Go to https://github.com/dignite-projects/abp-notifications/security/advisories/new
  2. Fill in the advisory form with as much detail as you can:
    • A description of the issue and its impact
    • Steps to reproduce (a minimal proof of concept helps a lot)
    • Affected package (e.g. Dignite.Abp.Notifications, Dignite.NotificationCenter.HttpApi, a specific persistence provider) and version / commit
    • Any suggested remediation, if you have one

What to expect

  • We will acknowledge your report through the advisory thread, normally within 7 days.
  • We will assess the report, keep you informed of progress, and work with you on a fix and coordinated disclosure. This is a volunteer-maintained open-source project, so exact timelines depend on severity and maintainer availability — critical issues are prioritized.
  • Once a fix is released, the advisory will be published and you will be credited (unless you prefer otherwise).

Please give us a reasonable opportunity to address the issue before any public disclosure.

There aren't any published security advisories