Skip to content

Security: Pyush/CipherLock

Security

SECURITY.md

Security Policy

Supported Versions

VersionSupported
1.x.x

Reporting a Vulnerability

We take the security of CipherLock (@iampyus/cipherlock) very seriously. If you discover a vulnerability or security issue, please do not open a public issue on GitHub.

Instead, please report security vulnerabilities by:

  1. Opening a Private Security Advisory directly on GitHub, or
  2. Contacting the maintainers directly via email.

What to Include in Your Report

  • A detailed description of the vulnerability.
  • Steps to reproduce the issue or a proof-of-concept payload/snippet.
  • Potential impact of the issue.

Security Response Process

  1. Acknowledgment: We will acknowledge receipt of your report within 48 hours.
  2. Assessment: We will investigate and assess the report to confirm the vulnerability.
  3. Fix & Release: If confirmed, we will prepare a patch release immediately.
  4. Disclosure: Once a patch is released, we will publish a coordinated advisory crediting your research.

There aren't any published security advisories