We currently support security updates for the following versions:
| Version | Supported |
|---|---|
| 0.1.x | ✅ |
If you discover a security vulnerability in KadenaTrace, please report it responsibly:
- Do NOT open a public issue
- Email security details to: kumars92@outlook.com
- Include a detailed description of the vulnerability
- Provide steps to reproduce the issue
- Allow up to 48 hours for an initial response
- Acknowledgment within 48 hours
- Initial assessment within 5 business days
- Regular updates on remediation progress
- Credit in the security advisory (unless you prefer anonymity)
This security policy covers:
- API endpoints and authentication flows
- Smart contract interactions
- Database access patterns
- Web dashboard security
- Wallet integration security
- Blockchain anchoring mechanisms
- Never commit private keys or API secrets to the repository
- Use environment variables for sensitive configuration
- Keep dependencies updated
- Report suspicious activity immediately