Skip to content

Security: HOME-OFFICE-IMPROVEMENTS-LTD/repoforge-examples

.github/SECURITY.md

Security Policy

Supported Versions

We take security seriously and support the following versions with security updates:

Version Supported
Latest
< Latest

Reporting a Vulnerability

We encourage responsible disclosure of security vulnerabilities. Please follow these steps:

How to Report

  1. DO NOT create a public GitHub issue for security vulnerabilities
  2. Send an email to: [email protected]
  3. Include the following information:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact
    • Suggested fix (if any)

Response Timeline

  • Acknowledgment: Within 24 hours
  • Initial Assessment: Within 72 hours
  • Regular Updates: Every 7 days until resolved
  • Resolution Target: 30 days for critical issues, 90 days for others

What to Expect

  1. We will acknowledge receipt of your report
  2. We will investigate and validate the issue
  3. We will work on a fix and coordinate disclosure
  4. We will credit you for the discovery (if desired)

Security Best Practices

For Contributors

  • Keep dependencies up to date
  • Follow secure coding practices
  • Use environment variables for sensitive data
  • Never commit secrets or credentials
  • Enable 2FA on your GitHub account

For Users

  • Always use the latest version
  • Report suspicious behavior
  • Follow principle of least privilege
  • Regularly update dependencies

Contact

For security-related questions: [email protected] For general questions: [email protected]


Last Updated: {datetime.now().strftime('%Y-%m-%d')} Version: 1.0

There aren’t any published security advisories