Skip to content

Security: WizardLoop/JewishPulse

Security

.github/SECURITY.md

πŸ” Security Policy

Supported Versions

We release security updates for the latest stable version of JewishPulse. Please ensure you are using the most recent release.

Version Supported
1.x βœ… Yes
< 1.0 ❌ No (legacy only)

πŸ“¬ Reporting a Vulnerability

If you discover a security vulnerability in the code, logic, or infrastructure of this project:

  • DO NOT open a public GitHub issue.
  • Instead, please report it privately to the maintainer via email.

πŸ“§ Contact

Email: [email protected]

We will respond within 72 hours and aim to resolve all verified issues promptly.


πŸ§ͺ Responsible Disclosure Guidelines

We respectfully ask that:

  • You provide as much detail as possible when reporting.
  • You do not publicly disclose the issue before we’ve addressed it.
  • You give us a reasonable time to fix the issue before disclosure.
  • You avoid testing vulnerabilities in a way that would harm users or systems (e.g., DoS attacks, spamming production bots, etc).

πŸ›‘οΈ Scope of This Policy

This security policy applies to:

  • The source code in JewishPulse GitHub repository
  • Data handling, language parsing, and Shabbat timing APIs usage within the bot
  • Webhooks or API integrations developed under this project

πŸ™ Thank You

We value and appreciate your effort in making JewishPulse safer for everyone. Toda raba! πŸ™Œ

There aren’t any published security advisories