Skip to content

Security: tsudo/reference

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security issue in this repository, please report it responsibly.

Contact: [email protected]
Web: keithcrawford.me/connect
GPG Key: Public Key (Key ID: 0xC4C53435)
Preferred Language: English

Scope

This repository contains reference content, not executable code. There is no CVE program or bug bounty associated with this project.

Report the following via the contact above or by opening an Issue:

  • Sensitive or classified content that should not be public
  • License or attribution errors
  • Personally identifiable information (PII) exposed in published documents
  • Broken access controls (files that should be private appearing in this repo)

Response

  • Reports are acknowledged within 48 hours.
  • Valid findings are addressed promptly. Fixes are prioritized by severity and exploitability.
  • Responsible disclosure is appreciated. Please allow reasonable time for remediation before public disclosure.

Attribution

If you report a valid finding and wish to be credited, let us know in your report. Credit is given in the fix commit or release notes unless you prefer to remain anonymous.

There aren’t any published security advisories