Skip to content

Security: soumya813/Notezy

Security

SECURITY.md

Security Policy

Supported Versions

We aim to support the latest stable release of this project. Older versions may not receive security updates unless explicitly stated.

Version Supported
latest
< x.x ❌ (no longer supported)

Reporting a Vulnerability

If you discover a security vulnerability in this project, please report it responsibly. Do not create a public GitHub issue.

Instead, please follow these steps:

  1. Email us at [soumyasrivastav813@gmail.com] with a detailed description of the vulnerability.
  2. Include steps to reproduce, potential impact, and any suggested fix if available.
  3. Allow a reasonable time for us to investigate and respond before disclosing the issue publicly.

We will respond to security reports within [72 hours], and aim to patch and release fixes within [7 days] of confirming the issue.

Security Best Practices

  • Keep dependencies up to date.
  • Review third-party packages for known vulnerabilities.
  • Do not expose sensitive data or secrets in public code.

Disclosure Policy

We follow responsible disclosure practices. After verifying and patching a vulnerability, we will:

  • Credit the reporter (if desired).
  • Publish a GitHub Security Advisory if applicable.
  • Notify users in the release notes or README.

Thank you for helping make this project more secure.

There aren’t any published security advisories