Last Updated: November 19, 2024
| Version | Supported |
|---|---|
| 1.2.1 | ✅ |
| 1.2.0 | ❌ |
| 1.1.0 | ❌ |
| 1.0.0 | ❌ |
We take security seriously at DevAssist Bot. If you discover a security vulnerability, please follow these steps:
- DO NOT create a public GitHub issue
- Email me at mantejarora@gmail.com
- Include detailed information about the vulnerability
- We will acknowledge receipt within 24 hours
- We will provide a detailed response within 72 hours
- We will work with you to verify and fix the issue
- All API endpoints use HTTPS
- Sensitive data is encrypted at rest
- Regular security audits
- Automated vulnerability scanning
- Rate limiting on all endpoints
- Input validation and sanitization
- Keep your API keys secure
- Use environment variables
- Regular token rotation
- Monitor for suspicious activity
- Keep dependencies updated
We offer rewards for responsible disclosure:
- Critical vulnerabilities: $200
- High severity: $100
- Medium severity: $50