Skip to content

Security: whyiug/issueready

SECURITY.md

Security policy

Supported versions

IssueReady has not published a stable release. Security fixes are currently applied to the latest commit on main.

Version Supported
main Yes
Older commits and forks No

Reporting a vulnerability

Please do not report suspected vulnerabilities in a public issue.

Use GitHub private vulnerability reporting to contact the maintainer. Include:

  • the affected commit and component;
  • the trust boundary and realistic preconditions;
  • a non-destructive, local reproduction;
  • the expected impact;
  • a minimal remediation suggestion, if known.

Do not include real credentials, private issue content, production data, weaponized payloads, or tests against public deployments.

The maintainer will acknowledge the report, investigate it privately, coordinate a fix, and agree on disclosure timing before publishing an advisory. Good-faith research that follows this policy is welcome.

There aren't any published security advisories