Skip to content

Security: orbit-collective/orbit

SECURITY.md

Orbit

Security Policy

Reporting a Vulnerability

The security of Orbit is taken seriously.

If you discover a security vulnerability, please do not open a public GitHub Issue.

Instead, report it privately via email.

Contact: codeadiksuu@gmail.com

Please include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Proof of concept (if available)
  • Suggested mitigation (optional)

You can expect an initial response within 12 hours.

We will investigate the issue, keep you informed of the progress, and release a fix as soon as possible.

Supported Versions

Orbit currently follows a rolling-release development model.

The latest version available on the master branch receives security fixes. Older snapshots or forks are not guaranteed to receive updates.

Responsible Disclosure

Please avoid publicly disclosing security vulnerabilities until a fix has been released.

Responsible disclosure helps protect all Orbit users.

There aren't any published security advisories