Skip to content

Security: anotheria/configureme

Security

SECURITY.md

Security Policy

Supported Versions

Use this section to tell people about which versions of your project are currently being supported with security updates.

Version Supported
4.x.x
< 4.0

Reporting a Vulnerability

Please report suspected security vulnerabilities privately via GitHub's Private Vulnerability Reporting form for this repository:

To help us validate and remediate quickly, please include:

  • A clear description of the issue and affected component/version
  • Reproduction steps or a proof of concept
  • Potential impact and any suggested mitigations

What to expect

  • Acknowledgment: within 3 business days
  • Initial assessment: within 7 business days
  • Status updates: at least every 14 days until resolution

If the report is accepted, we will work on a fix, coordinate disclosure timing, and credit the reporter (if desired). If the report is declined, we will share a brief rationale (for example, out-of-scope behavior or insufficient evidence).

Please do not disclose vulnerabilities publicly until we have investigated and released a mitigation or fix.

There aren't any published security advisories