Only the latest dev and main branches are currently supported.
| Version | Supported |
|---|---|
dev |
✅ |
main |
✅ |
| < 1.0 | ❌ |
We take security seriously. If you discover a vulnerability:
- DO NOT open a public GitHub issue.
- Send an email immediately to security@skooly.io.
- Include:
- Description of the flaw.
- Steps to reproduce.
- Potential impact.
We will acknowledge your email within 48 hours.
- We practice Responsible Disclosure.
- We commit to fixing critical vulnerabilities within 7 days.
- We will properly credit you in the release notes (if you wish).
Since Skooly handles sensitive data (Grades, Payments, Identity), we are extra vigilant on:
- Payment Webhooks: Ensure
HMACsignature verification from MTN/Orange. - Grade Modification: Ensure strict audit logs for any
UPDATEonGradetable. - PII Leakage: No student personal data in logs.