Skip to content
This repository has been archived by the owner on Sep 8, 2023. It is now read-only.

Trying to get in touch regarding a security issue #1133

Open
JamieSlome opened this issue Sep 7, 2021 · 3 comments
Open

Trying to get in touch regarding a security issue #1133

JamieSlome opened this issue Sep 7, 2021 · 3 comments

Comments

@JamieSlome
Copy link

Hey there!

I'd like to report a security issue but cannot find contact instructions on your repository.

If not a hassle, might you kindly add a SECURITY.md file with an email, or another contact method? GitHub recommends this best practice to ensure security issues are responsibly disclosed, and it would serve as a simple instruction for security researchers in the future.

Thank you for your consideration, and I look forward to hearing from you!

(cc @huntr-helper)

@cheiff
Copy link
Member

cheiff commented Sep 7, 2021

Please, read the README, in particular https://github.com/Codiad/Codiad#unmaintained-status
Codiad is unmaintained. It should not be used in production, it is expected to have more and more security issues.

@HLSiira
Copy link

HLSiira commented Sep 7, 2021

Hey, I've been working on an active fork of Codiad called Atheos and I'd be interested in hearing about the security issue in order to determine if Atheos is vulnerable.

@zidingz
Copy link

zidingz commented Sep 10, 2021

Hey @HLSiira, thank you for keeping Codiad alive! I've asked the researcher to consider re-disclosing against your fork. We'll contact you there once he does.

Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
None yet
Projects
None yet
Development

No branches or pull requests

4 participants