Skip to content

Security: shlok926/SentinelForensicsAI

Security

SECURITY.md

Security Policy for SentinelForensicsAI

This document outlines the security policies, supported versions, and vulnerability reporting procedures for the SentinelForensicsAI platform.

Supported Versions

The following versions of SentinelForensicsAI are currently supported with security updates:

Version Supported Notes
1.0.x ✅ Yes Current stable release branch
< 1.0.0 ❌ No Legacy pre-release versions

Reporting a Vulnerability

We take the security of SentinelForensicsAI seriously. If you find a security vulnerability, please report it immediately rather than opening a public issue on GitHub.

To report a vulnerability:

  1. Email your report to: shlokthorat29075@gmail.com
  2. Include a detailed description of the issue, steps to reproduce, and a proof of concept (PoC) if available.
  3. We will acknowledge receipt of your report within 48 hours and provide a timeline for triage and patch deployment.

Disclosure Process

When a vulnerability is reported:

  1. Triage: We investigate and confirm the vulnerability.
  2. Patching: A fix is developed in a private security fork.
  3. Verification: The patch is verified through the unit test suite.
  4. Release: A security patch version is tagged and released.
  5. Advisory: A security advisory will be published on GitHub detailing the fix and credit to the reporter.

There aren't any published security advisories