Skip to content

Security: projectboot/drivershield

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in DriverShield, please report it responsibly.

Do NOT open a public GitHub issue for security vulnerabilities.

How to Report

  1. Visit drivershield.io/contact
  2. Send a detailed description of the vulnerability
  3. Include steps to reproduce if possible

Response Timeline

  • Acknowledgment: Within 48 hours
  • Assessment: Within 7 days
  • Fix/Mitigation: Based on severity

Scope

  • drivershield.io web application
  • DriverShield API endpoints
  • Analysis engine behavior

Out of Scope

  • Denial of service attacks
  • Social engineering
  • Third-party services (VirusTotal, hCaptcha, Cloudflare)

We appreciate responsible disclosure and will credit researchers who report valid vulnerabilities (with permission).

There aren’t any published security advisories