Skip to content

Security: Mai0313/dotfiles

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in any of my repositories, please report it responsibly.

Do NOT open a public issue. Instead, please use one of the following methods:

  1. GitHub Security Advisories: Use the "Report a vulnerability" button on the repository's Security tab
  2. Email: Contact the repository owner directly

What to Include

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

Response Timeline

  • Acknowledgment: Within 48 hours
  • Initial assessment: Within 1 week
  • Fix or mitigation: Depends on severity

Supported Versions

Unless otherwise stated in a specific repository, only the latest release is actively supported with security updates.

Security Best Practices

All repositories under this account follow these security practices:

  • Dependencies are monitored via Dependabot
  • Secrets are scanned using Gitleaks
  • Pre-commit hooks enforce security checks before code is committed

There aren’t any published security advisories