Skip to content

Security: ametemre/iyesi

SECURITY.md

Security Policy

Supported Versions

We maintain security support and recommendations for the following versions:

Version Supported
v0.03 ✅ Latest stable

Reporting a Vulnerability

If you discover a potential security vulnerability in the Iyesi project, please follow these steps instead of opening a public issue:

  1. Email: Send a detailed report to [email protected].
  2. PGP (optional): Encrypt your report using our public key (if available) to [email protected].

Include the following information in your report:

  • A description of the vulnerability
  • Steps to reproduce or a minimal proof-of-concept
  • Impact assessment (e.g., data leakage, code execution)
  • Any suggested remediation

Response Process

Phase Timeline
Acknowledgment Within 2 business days
Resolution Target: within 14 days
Disclosure Coordinated with reporter
  1. Acknowledgment: We will confirm receipt of your report.
  2. Investigation: We’ll prioritize and investigate the issue.
  3. Fix & Release: A patch or mitigation will be released.
  4. Disclosure: After resolution, we’ll work with you on coordinated disclosure.

Security Practices

  • Regular dependency updates
  • Automated static code analysis
  • Peer reviews for security-critical changes

Contact

Maintained by Ahmet Emre. For any questions regarding this policy, email [email protected].

There aren’t any published security advisories