If you discover a security vulnerability in ParikshaSuraksha, please report it responsibly.
DO NOT open a public GitHub issue for security vulnerabilities.
Email: divyamohan1993@gmail.com Subject: [SECURITY] ParikshaSuraksha - Brief Description
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if any)
- Acknowledgment: Within 48 hours
- Assessment: Within 7 days
- Fix: Dependent on severity
The following are in scope:
- API endpoint vulnerabilities (injection, authentication bypass, authorization flaws)
- Cryptographic implementation weaknesses
- Anti-cheat bypass methods
- Data exposure risks
- Exam content leakage vectors
The following are out of scope:
- Denial of service attacks
- Social engineering
- Physical security of exam centers
- Third-party service vulnerabilities (GCP, Gemini API)
| Version | Supported |
|---|---|
| Latest | Yes |
| < Latest | No |