server/SECURITY.md

22 lines
1.2 KiB
Markdown
Raw Normal View History

2023-11-20 03:34:59 +01:00
# Security Policy
## Supported Versions
For now, only the released latest version of Veraia Server is supported for security updates. This will change as Versia Server exits alpha status.
2023-11-20 03:34:59 +01:00
## Reporting a Vulnerability
If you find a vulnerability, please report it to [@CPlusPatch](https://github.com/CPlusPatch) at the following contact endpoints:
- [Matrix](https://matrix.to/#/@jesse:cpluspatch.dev)
- [E-mail](mailto:contact@cpluspatch.com)
Please do not report vulnerabilities publicly until they have been patched. If you would like to be credited for your discovery, please include your name and/or GitHub username in your report.
## Vulnerability Disclosure Policy
Versia Server is an open-source project, and as such, we welcome security researchers to audit our code and report vulnerabilities. We will do our best to patch vulnerabilities as quickly as possible, and will credit researchers for their discoveries if they wish to be credited.
2023-11-20 03:34:59 +01:00
For security reasons, we ask that you do not publicly disclose vulnerabilities until they have been patched. We will do our best to patch vulnerabilities as quickly as possible, and will credit researchers for their discoveries if they wish to be credited.
Thank you for helping to keep Versia Server secure! :3