Skip to content

Security: fandango-fuzzer/fandango

SECURITY.md

Security Policy

Reporting a Vulnerability

If you find a security vulnerability in this project, we strongly encourage you to report it as soon as possible. Please follow the steps below:

  1. Do not publicly disclose the vulnerability until we have had a chance to address it.
  2. Contact us directly via fandango-fuzzer@protonmail.com with the following details:
    • A detailed description of the vulnerability.
    • Steps to reproduce the issue, if applicable.
    • The impact or potential impact of the vulnerability.

We will confirm receipt of your report within 48 hours and provide a timeline for resolving the issue.


Security Measures

To help ensure the security of this project, we:

  • Use best practices for secure coding.
  • Regularly update dependencies to address vulnerabilities.
  • Monitor the project for potential security threats.

Coordinated Disclosure

We follow a coordinated disclosure process. Once a vulnerability has been verified and fixed, we will:

  1. Acknowledge the contribution of the reporter (if agreed upon).
  2. Publicly disclose the details in a security advisory.
  3. Notify affected users, if applicable.

Thank you for helping us keep this project secure.

There aren’t any published security advisories