Skip to content

Latest commit

 

History

History
43 lines (28 loc) · 1.08 KB

SECURITY.md

File metadata and controls

43 lines (28 loc) · 1.08 KB

Security Policy

Supported Versions

We currently support the following versions of the project with security updates:

Version Supported
0.1.x
< 0.1.0

Reporting a Vulnerability

Responsible Disclosure Process

  1. Do Not publicly disclose the vulnerability until it has been addressed.

  2. Email Security Reports:

    • Send details to: [email protected]
    • Include a descriptive subject line, e.g. "Security Vulnerability in throttle-proxy"
  3. What to Include in Your Report:

    • Description of the vulnerability
    • Potential impact
    • Steps to reproduce
    • Suggested remediation (if known)

Security Best Practices for Contributors

  • Always validate and sanitize inputs
  • Use the principle of least privilege
  • Keep dependencies updated
  • Follow OWASP security recommendations

Our Commitment

  • We take security seriously
  • We will respond promptly to reported issues
  • We aim to provide patches within 30 days of confirmation

Last Updated: December 2024