Skip to content

Security: entire-vc/.github

Security

SECURITY.md

Security Policy

This is the org-wide default. It applies to any Entire VC repository that does not have its own SECURITY.md.

Reporting a Vulnerability

Do NOT create a public GitHub issue for security vulnerabilities.

Use this repository's Security tab → Report a vulnerability (GitHub private vulnerability reporting), if enabled. If you cannot use GitHub, email support@entire.vc with SECURITY in the subject and we will move the conversation somewhere private; do not put vulnerability details in a public issue in the meantime.

Include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

What to Expect

  1. Acknowledgment — We'll respond within 48 hours
  2. Assessment — We'll investigate and assess severity
  3. Fix — We'll develop and test a fix
  4. Disclosure — We'll coordinate disclosure timing with you
  5. Credit — We'll credit you in the release notes (if desired)

Thank you for helping keep Entire VC's projects secure!

There aren't any published security advisories