Use this section to tell people about which versions of your project are currently being supported with security updates.
Version | Supported |
---|---|
1.0.x | ✅ |
Use this section to tell people how to report a vulnerability.
If you discover a security vulnerability within this project, please send an email to [Aashish Vivekanand] at [aashishvanand@gmail.com]. All security vulnerabilities will be promptly addressed. Please do not disclose security-related issues publicly until a fix has been announced.
- Please provide detailed reports with reproducible steps and code samples if possible. If the report is not detailed enough to reproduce the issue, the report may be closed.
- Describe the type of attack (e.g., Man-in-the-Middle, SQL Injection, Cross-site Scripting, etc.) and provide the affected version of the project.
- Describe the potential impact of the vulnerability.
- Confirmation of receipt: Upon receiving a security vulnerability report, we will acknowledge receipt of the report within 3-5 business days.
- Assessment: We will validate and reproduce the vulnerability from the report. We will also assess the severity and potential impact of the vulnerability.
- Mitigation: After validating the vulnerability, we will work on a fix and release a security patch. We may also contact you to further discuss the report.
- Notification: After the patch, we will publish a security advisory on GitHub detailing the vulnerability and thanking you for your report.
Thank you for helping keep the project and its users safe!