The maintenance team for Black_Hole takes security bugs seriously. We appreciate your efforts to responsibly disclose your findings and will make every effort to acknowledge your contributions and address issues promptly.
Currently, security updates are provided for the following versions:
| Version | Supported |
|---|---|
| Latest | ✅ |
| < 1.0.0 | ❌ |
To report a security issue, please use the GitHub Security Advisory tool. This keeps the report private while we work on a fix.
Report a Vulnerability for Black_Hole
- Acknowledgement: You will receive a response indicating the next steps within 3-5 business days.
- Investigation: We will keep you informed of the progress towards a fix and may ask for additional information or a Proof of Concept (PoC).
- Disclosure: Once a fix is ready, we will coordinate a full announcement and credit you for the discovery.
This policy applies to the core code within the shanmuckh/Black_Hole repository.
- Third-Party Modules: Please report security bugs in third-party dependencies to their respective maintainers.
- Infrastructure: Issues regarding GitHub's infrastructure should be reported via the GitHub Bug Bounty program.
If you do not receive an acknowledgement of your report within 7 business days, please feel free to reach out via GitHub issues (without disclosing the vulnerability details publicly) to request a status update.
Thank you for helping keep Black_Hole secure!