We take the security of this project seriously. We believe that open source security is a shared responsibility, and we appreciate your help in keeping our project safe.
If you believe you have found a security vulnerability in this project, please report it privately. Do not open a public issue for security-related concerns.
To report a vulnerability, please send an email to: support@stonebogus.com
- A clear description of the vulnerability.
- Steps to reproduce the issue.
- Impact of the vulnerability (what could an attacker do?).
- Any suggested fixes or mitigations.
We will acknowledge your report within [e.g., 48 hours] and work to resolve the issue as quickly as possible.
We follow a coordinated disclosure process:
- You report the vulnerability privately.
- We confirm the issue and work on a fix.
- We release a security patch to the public.
- We acknowledge your contribution in the project's release notes.
We kindly ask you to keep the report confidential until we have had sufficient time to release a fix.
We only provide security updates for the latest stable release. Please ensure you are using the most recent version of the project before reporting a vulnerability.