| Version | Supported |
|---|---|
| 1.x.x | ✅ |
We take the security of CipherLock (@iampyus/cipherlock) very seriously. If you discover a vulnerability or security issue, please do not open a public issue on GitHub.
Instead, please report security vulnerabilities by:
- Opening a Private Security Advisory directly on GitHub, or
- Contacting the maintainers directly via email.
- A detailed description of the vulnerability.
- Steps to reproduce the issue or a proof-of-concept payload/snippet.
- Potential impact of the issue.
- Acknowledgment: We will acknowledge receipt of your report within 48 hours.
- Assessment: We will investigate and assess the report to confirm the vulnerability.
- Fix & Release: If confirmed, we will prepare a patch release immediately.
- Disclosure: Once a patch is released, we will publish a coordinated advisory crediting your research.