| Version | Supported |
|---|---|
| Latest | ✅ Yes |
| Older | ❌ No |
If you discover a security vulnerability in any of my repositories, please do not open a public issue.
Instead, report it privately:
- Email: anilkr@rkis.in
- Subject line:
[SECURITY] <repo-name> — brief description
- The repository and file(s) affected
- Steps to reproduce the vulnerability
- Potential impact
- Any suggested fix (optional)
- I will acknowledge your report within 48 hours
- I will aim to release a fix within 7 days for critical issues
- I will credit you in the fix commit/release notes (unless you prefer anonymity)
- Never commit secrets, API keys, or credentials — use environment variables
- All dependencies must be pinned to specific versions
- Pull requests require review before merging to the default branch
- All CI checks (including security scans) must pass before merge
This policy applies to all public repositories under this account.