Skip to content

Security: Scottcjn/grazer-skill

Security

SECURITY.md

Security Policy

Supported Versions

Use this section to tell people about which versions of your project are currently being supported with security updates.

Version Supported
latest
< latest

Reporting a Vulnerability

We take the security of our project seriously. If you have discovered a security vulnerability, please report it to us responsibly.

How to Report

  • Email: security@example.com
  • GitHub Security Advisories: Use the "Report a vulnerability" feature in the Security tab

What to Include

Please provide as much information as possible:

  1. Description of the vulnerability
  2. Steps to reproduce the issue
  3. Impact assessment - what could an attacker do?
  4. Affected versions of the project
  5. Any potential fixes or workarounds (if known)

Response Timeline

  • Acknowledgment: Within 48 hours
  • Status Update: Within 5 business days
  • Resolution: Depends on severity (critical issues prioritized)

Disclosure Policy

Please allow us reasonable time to respond to the report before disclosing it publicly. We aim to resolve critical vulnerabilities within 30 days.

Security Best Practices

When contributing to this project, please:

  • Never commit sensitive information (API keys, passwords, etc.)
  • Keep dependencies up to date
  • Follow secure coding guidelines
  • Review code for security issues before submitting PRs

Thank you for helping keep our project secure! 🙏

There aren’t any published security advisories