Skip to content

๐Ÿ” Issue : Add SECURITY.md and Enable GitHub Security Featuresย #242

@darshikadubey67

Description

@darshikadubey67

๐Ÿ‘‹ Hello Team!
I noticed thereโ€™s no SECURITY.md file in the repo, and Iโ€™d like to suggest adding one along with enabling some native GitHub security features.
๐Ÿ” Observations:

  • No guidance on how to report vulnerabilities
  • No .gitignore coverage for potential sensitive files
  • GitHub security alerts and secret scanning may not be enabled
    โœ… Suggested Improvements:
  • Create a SECURITY.md with reporting instructions and contact details
  • Expand .gitignore to exclude env files and sensitive configs
  • Enable GitHub secret scanning and Dependabot alerts
    ๐Ÿ’ก Why This Helps:
    Security transparency builds trust and protects contributors and users. Iโ€™d be happy to draft the initial file and help configure these features.
    Please assign this issue to me.

Metadata

Metadata

Projects

Status

Done

Relationships

None yet

Development

No branches or pull requests

Issue actions