From fbcb4113f110a7db9cf21d18510cb59c2e90ba23 Mon Sep 17 00:00:00 2001 From: Christian Cleberg Date: Sun, 2 Aug 2026 15:29:33 -0500 Subject: convert readme to nfo; convert docs to txt; relicense to 0bsd --- SECURITY.txt | 33 +++++++++++++++++++++++++++++++++ 1 file changed, 33 insertions(+) create mode 100644 SECURITY.txt (limited to 'SECURITY.txt') diff --git a/SECURITY.txt b/SECURITY.txt new file mode 100644 index 0000000..9ccdecb --- /dev/null +++ b/SECURITY.txt @@ -0,0 +1,33 @@ +# Security Policy + +## Supported Versions + +|Version|Supported| +|-------|---------| +| 3.x | ✅ Yes | +| < 3.0 | ❌ No | + +--- + +## Reporting a Vulnerability + +If you discover a security vulnerability, **do not open a public issue**. +Instead: + +1. **Email** your report to [root@krz.sh](mailto:root@krz.sh). + Include: + - A detailed description of the vulnerability + - Steps to reproduce + - Any relevant context (e.g., affected versions, environment) +2. **Response Time**: We will acknowledge your report within **3 business days** + and keep you updated on the progress. +3. **Resolution**: If confirmed, we will: + - Provide an estimated timeline for a fix + - Work with you to verify the resolution + - Credit you for the discovery (if you wish) +4. **Declined Reports**: If the report is invalid or out of scope, we will + explain why and close the issue. + +--- + +**Thank you for helping improve the security of our project!** -- cgit v1.2.3