Skip to content

Security: shanmuckh/Black_Hole

Security

SECURITY.md

Security Policy

The maintenance team for Black_Hole takes security bugs seriously. We appreciate your efforts to responsibly disclose your findings and will make every effort to acknowledge your contributions and address issues promptly.

Supported Versions

Currently, security updates are provided for the following versions:

Version Supported
Latest
< 1.0.0

Reporting a Vulnerability

To report a security issue, please use the GitHub Security Advisory tool. This keeps the report private while we work on a fix.

Report a Vulnerability for Black_Hole

What to expect

  1. Acknowledgement: You will receive a response indicating the next steps within 3-5 business days.
  2. Investigation: We will keep you informed of the progress towards a fix and may ask for additional information or a Proof of Concept (PoC).
  3. Disclosure: Once a fix is ready, we will coordinate a full announcement and credit you for the discovery.

Scope

This policy applies to the core code within the shanmuckh/Black_Hole repository.

  • Third-Party Modules: Please report security bugs in third-party dependencies to their respective maintainers.
  • Infrastructure: Issues regarding GitHub's infrastructure should be reported via the GitHub Bug Bounty program.

Escalation

If you do not receive an acknowledgement of your report within 7 business days, please feel free to reach out via GitHub issues (without disclosing the vulnerability details publicly) to request a status update.


Thank you for helping keep Black_Hole secure!

There aren’t any published security advisories