Skip to content

Navigation Menu

Sign in
Appearance settings

Search code, repositories, users, issues, pull requests...

Provide feedback

We read every piece of feedback, and take your input very seriously.

Saved searches

Use saved searches to filter your results more quickly

Sign up
Appearance settings

Security: OrionArch/GlowSchedule

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

Do not open a public GitHub issue for security vulnerabilities.

To report a security issue, please use one of the following:

Please include:

  • A description of the vulnerability
  • Steps to reproduce or a proof-of-concept
  • The affected version(s)
  • Any potential impact

Response Timeline

  • Acknowledgment: within 48 hours of report
  • Status update: within 7 days
  • Fix: within 30 days for confirmed vulnerabilities

Supported Versions

Version Supported
1.0.x
< 1.0

Disclosure Policy

We follow coordinated vulnerability disclosure:

  1. Report the vulnerability privately (see above)
  2. We will acknowledge your report and begin investigation
  3. We will develop and test a fix
  4. We will coordinate a release date with you
  5. We will publish a security advisory on GitHub along with the fix
  6. You will receive credit in the advisory (unless you prefer to remain anonymous)

We ask that you:

  • Give us a reasonable amount of time to fix the issue before any public disclosure
  • Do not exploit the vulnerability beyond what is necessary to demonstrate it
  • Do not access or modify other users' data

We appreciate responsible disclosure and will acknowledge contributors who help keep GlowSchedule secure.

There aren't any published security advisories

AltStyle によって変換されたページ (->オリジナル) /