Skip to content

Security: tessil-app/tessil-api

Security

SECURITY.md

Security Policy

Supported Versions

Security fixes are applied to the latest deployed version of Tessil.

Reporting a Vulnerability

If you discover a vulnerability, please report it privately:

  • Email: security@tessil.app
  • Subject: Tessil Security Report

Please include:

  • Affected endpoint or feature
  • Clear reproduction steps
  • Expected vs actual behavior
  • Potential impact
  • Proof of concept (if available)

Response Targets

  • Acknowledgement: within 72 hours
  • Triage update: within 7 days
  • Fix timeline: depends on severity and complexity

Disclosure

Please do not publicly disclose vulnerabilities until a fix is available and deployed.

There aren't any published security advisories