diff options
| author | Christian Cleberg <[email protected]> | 2026-08-02 15:29:36 -0500 |
|---|---|---|
| committer | Christian Cleberg <[email protected]> | 2026-08-02 15:29:36 -0500 |
| commit | ac3dccd27c8f2de325fde1394c92a6091f27555c (patch) | |
| tree | 9bdf12f3727086ee6ae73dd3b8b39ed0f5067a1a /SECURITY.txt | |
| parent | 219c5401387339f5ebc025d8c89be14552c1cc21 (diff) | |
| download | rune-main.tar.gz rune-main.tar.bz2 rune-main.zip | |
Diffstat (limited to 'SECURITY.txt')
| -rw-r--r-- | SECURITY.txt | 33 |
1 files changed, 33 insertions, 0 deletions
diff --git a/SECURITY.txt b/SECURITY.txt new file mode 100644 index 0000000..1423145 --- /dev/null +++ b/SECURITY.txt @@ -0,0 +1,33 @@ +# Security Policy + +## Supported Versions + +|Version|Supported| +|-------|---------| +| 1.x | ✅ Yes | +| < 1.0 | ❌ No | + +--- + +## Reporting a Vulnerability + +If you discover a security vulnerability, **do not open a public issue**. +Instead: + +1. **Email** your report to [[email protected]](mailto:[email protected]). + Include: + - A detailed description of the vulnerability + - Steps to reproduce + - Any relevant context (e.g., affected versions, environment) +2. **Response Time**: We will acknowledge your report within **3 business days** + and keep you updated on the progress. +3. **Resolution**: If confirmed, we will: + - Provide an estimated timeline for a fix + - Work with you to verify the resolution + - Credit you for the discovery (if you wish) +4. **Declined Reports**: If the report is invalid or out of scope, we will + explain why and close the issue. + +--- + +**Thank you for helping improve the security of our project!** |
