Skip to content

Security: mnemoverse/mnemoverse-sdk-python

Security

SECURITY.md

Security Policy

Reporting Security Vulnerabilities

We take security seriously at Mnemoverse. If you discover a security vulnerability, please follow these steps:

  1. DO NOT open a public issue
  2. Email security@mnemoverse.com with:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact
    • Your suggested fix (if any)

Response Timeline

  • 24 hours: Initial acknowledgment
  • 72 hours: Preliminary assessment
  • 7 days: Detailed response and timeline
  • 30 days: Fix implementation (depending on severity)

Supported Versions

We provide security updates for:

  • Current major version
  • Previous major version (for 6 months after new release)

Security Best Practices

When contributing code:

  • Never commit secrets or API keys
  • Use environment variables for configuration
  • Follow OWASP guidelines
  • Keep dependencies updated

Recognition

We appreciate responsible disclosure and will acknowledge security researchers in our release notes (unless you prefer to remain anonymous).

There aren’t any published security advisories