Skip to content

Security: SkinBookMC/community

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in SkinBook, you can report it in one of the following ways:

Option 1: Email

  1. Do Not Disclose Publicly:

    • Please avoid creating a public GitHub issue for the security vulnerability. Report it privately.
  2. Submit Your Report:

    • Email: [email protected]
    • Subject: [Security] Description of the issue
    • Provide a detailed description of the vulnerability, including steps to reproduce and any additional context.
  3. Response:

    • We will investigate the issue and provide an estimated timeline for resolution.
    • We will notify you when the vulnerability has been fixed.

Option 2: GitHub Security Advisories

Alternatively, you can use the GitHub Security Advisories to report vulnerabilities.

Handling of Security Issues

  1. Priority:

    • Security issues are treated with high priority.
    • We aim to acknowledge and address reported vulnerabilities promptly.
  2. Public Disclosure:

    • We will disclose security vulnerabilities responsibly after implementing fixes.
  3. Updates and Patches:

    • Security patches will be released as soon as fixes are available.
    • Users are encouraged to apply updates promptly.
  4. Acknowledgment:

    • If you wish to be publicly acknowledged for reporting a security vulnerability, please let us know in your initial report.

By reporting a security vulnerability, you help us improve the security of SkinBook. We appreciate your responsible disclosure.

There aren’t any published security advisories