Skip to content

Security Policy

Supported Versions

Security fixes are provided only for the current major version:

Version Status
2.0.x ✅ Supported
1.x (including 1.0.2-rc1, 1.0.3) ❌ Not supported — upgrade to 2.0

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

If you discover a security vulnerability within this project, please help us protect the network by reporting it responsibly.

How to report

Preferred: Use GitHub's built-in Private Vulnerability Reporting — click the "Report a vulnerability" button on the Security tab of this repository. This keeps the report confidential and tracked within GitHub.

Alternative: Reach out directly via LinkedIn private message:

Profile: linkedin

When sending a message, please start with the subject: "SECURITY VULNERABILITY REPORT - CYBER SENTINEL".

What to include

  1. Type of issue (e.g., SQL injection, logic error, unauthorized access).
  2. Full description of the vulnerability.
  3. Potential impact of the vulnerability on the local environment.

Our Commitment

If you report a vulnerability, I commit to the following:

  1. Acknowledgment: I will acknowledge receipt within 48 hours.
  2. Investigation: I will provide a detailed response and a planned fix within 7–10 business days.