Skip to content

Security: KhushiPandey8/aiCodeReviewer

Security

SECURITY.md

Security Policy for AI Reviewer

Supported Versions

This section outlines the supported versions of the AI Code Reviewer project for security updates and patches. Please ensure you're using a supported version for the best security practices.

Version Supported
1.0.x
0.9.x
0.8.x
< 0.8

Reporting a Vulnerability

We take security very seriously at AI Reviewer. If you discover a potential security vulnerability, please report it immediately using the following steps:

Steps to Report a Vulnerability:

  1. Submit a Detailed Issue: Go to the AI Code Reviewer Issues page and submit a new issue with the tag security. Include detailed information about the vulnerability, reproduction steps (if applicable), and any other relevant details.
  2. Email: You can also email us at security@aicodereviewer.com with your findings.

Response Time:

  • Initial Acknowledgement: We will acknowledge the report within 48 hours.
  • Investigation Period: Our team will investigate the vulnerability and work on a fix. This may take up to 14 days depending on the complexity of the issue.
  • Update Frequency: You will be updated on the progress of the vulnerability fix at least once every 5 business days.

If the Vulnerability is Accepted:

  • We will work on releasing a fix and will notify all users via an updated release on GitHub.
  • If the issue is deemed critical, we will prioritize it and release an emergency patch as soon as possible.

If the Vulnerability is Declined:

  • If the issue does not meet our security criteria or is found to be a non-issue, we will provide a detailed explanation.

Thank you for helping keep AI Reviewer secure!

There aren’t any published security advisories