Skip to content

Security: ringee-io/ringee-app

Security

SECURITY.md

Security Policy

Introduction

The Ringee project is committed to ensuring the security and integrity of our users' communication data. This security policy outlines our procedures for handling security vulnerabilities and our disclosure policy.

Reporting Security Vulnerabilities

If you discover a security vulnerability in Ringee, please report it to us privately via email to the maintainers:

When reporting a security vulnerability, please provide as much detail as possible, including:

  • A clear description of the vulnerability
  • Steps to reproduce the vulnerability
  • Any relevant code, logs, or configuration files

Supported Versions

This project currently only supports the latest branch/release. We recommend that users always use the latest version of Ringee to ensure they have the latest security patches.

Disclosure Guidelines

We follow a private disclosure policy. If you discover a security vulnerability, please report it to us privately via email to the maintainers listed above. We will respond promptly to reports of vulnerabilities and work to resolve them as quickly as possible.

We will not publicly disclose security vulnerabilities until a patch or fix is available to prevent malicious actors from exploiting the vulnerability before a fix is released.

Security Vulnerability Response Process

We take security vulnerabilities seriously and will respond promptly to reports of vulnerabilities. Our response process includes:

  • Investigating the report and verifying the vulnerability.
  • Developing a patch or fix for the vulnerability.
  • Releasing the patch or fix as soon as possible.
  • Notifying users of the vulnerability and the patch or fix.

Template Attribution

This SECURITY.md file is based on the GitHub Security Policy Template.

Thank you for helping to keep Ringee secure!

There aren’t any published security advisories