Skip to content

Security: karthiknitt/tamil-panchang-api

Security

SECURITY.md

Security Policy

Reporting Security Vulnerabilities

If you discover a security vulnerability in this project, please do not open a public issue. Instead, please email your findings directly to:

[karthiknitt@gmail.com]

Please include:

  • Description of the vulnerability
  • Steps to reproduce it
  • Potential impact
  • Suggested fix (if you have one)

We appreciate responsible disclosure and will make every effort to acknowledge your report and develop a fix.

Security Practices

This project follows these security practices:

Branch Protection

  • All changes to the main branch require:
    • At least 1 approving review
    • Status checks to pass
    • Resolution of all conversations
    • Code owner review for sensitive files
    • No force pushes or deletions allowed

Dependency Management

  • Dependencies are regularly updated
  • Security vulnerabilities are addressed promptly
  • Dependabot alerts are enabled and monitored

Code Review

  • All contributions are reviewed before merging
  • Code owners must approve changes to critical files
  • Automated security checks are run on all PRs

Supported Versions

Version Supported
Latest ✅ Yes
Older versions ⚠️ Security updates only

Known Limitations

  • This is an open-source project maintained by volunteers
  • Security issues will be addressed based on severity and available resources
  • We follow Coordinated Vulnerability Disclosure (CVD) practices

Security Advisories

We recommend:

  • Always using the latest version
  • Regularly reviewing GitHub security alerts
  • Following secure coding practices when using this API
  • Reporting any suspicious activity

Thank you for helping keep this project secure!

There aren’t any published security advisories