Skip to content

Security: brian-a-au/cja_auto_sdr

SECURITY.md

Security Policy

Supported versions

Security fixes are applied to the latest released version of cja-auto-sdr. Upgrade to the newest release before reporting an issue that may already have been fixed.

Reporting a vulnerability

Please use GitHub's private vulnerability reporting for this repository:

https://github.com/brian-a-au/cja_auto_sdr/security/advisories/new

Do not open a public issue for a suspected vulnerability. Include the affected version, impact, reproduction steps or a proof of concept, and any suggested mitigation. Please remove credentials, access tokens, organization and client IDs, profile contents, sandbox names, live customer resource data, and other sensitive information from the report.

You should receive an acknowledgement through the private advisory within seven days. Confirmed issues will be coordinated there until a fix and disclosure are ready.

There aren't any published security advisories