Skip to content

Security: mrhymes26/Image-Digitizer

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.0.x

Reporting a Vulnerability

If you discover a security vulnerability in Image Digitizer, please report it responsibly.

How to Report

  1. Do NOT open a public issue for security vulnerabilities
  2. Send an email to the project maintainer via GitHub
  3. Include the following information:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact
    • Suggested fix (if any)

What to Expect

  • Acknowledgment: Within 48 hours
  • Initial Assessment: Within 7 days
  • Resolution Timeline: Depends on severity
    • Critical: 24-48 hours
    • High: 7 days
    • Medium: 30 days
    • Low: Next release

Security Best Practices for Users

  1. Download only from official sources

    • GitHub Releases page
    • Official repository
  2. Verify file integrity

    • Check file hashes when provided
  3. Keep the application updated

    • Use the latest version for security fixes
  4. Scanner Security

    • Only connect trusted scanners
    • Use network scanners on secure networks only

Scope

This security policy applies to:

  • The Image Digitizer application
  • Official releases and builds
  • Source code in this repository

Out of Scope

  • Third-party dependencies (report to respective projects)
  • Scanner firmware vulnerabilities
  • Windows/OS vulnerabilities

There aren’t any published security advisories