mirror of
https://github.com/GeiserX/genieacs-services
synced 2026-04-21 15:57:17 +00:00
1.2 KiB
1.2 KiB
Security Policy
Reporting Security Issues
Please do not report security vulnerabilities through public GitHub issues.
Instead, please use GitHub's private vulnerability reporting:
- Go to the Security tab of this repository
- Click "Report a vulnerability"
- Fill out the form with details
I will respond within 48 hours and work with you to understand and address the issue.
What to Include
- Type of issue (e.g., XSS, SQL injection, authentication bypass)
- Full paths of affected source files
- Step-by-step instructions to reproduce
- Proof-of-concept or exploit code (if possible)
- Impact assessment and potential attack scenarios
Supported Versions
Only the latest version receives security updates. Please always use the most recent release.
Security Best Practices for Contributors
- Never commit secrets — use environment variables
- Validate all input — especially from external sources
- Keep dependencies updated — Dependabot is enabled on this repo
- Follow the principle of least privilege in all code
Contact
For security questions that aren't vulnerabilities, open a regular issue or reach out via the repository's Discussions tab.