Skip to content

Security: giacomoguidotto/knowledge-system

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
Latest Yes

Reporting Security Issues

If you believe you have found a security vulnerability or export-safety issue, please let us know right away. We will investigate legitimate reports and do our best to quickly fix the problem.

Please do not report security vulnerabilities through public GitHub issues.

Instead, report them via email to kb-infra@guidotto.dev.

Please include:

  • A description of the vulnerability or unsafe export path
  • Steps to reproduce the issue
  • Any relevant logs or screenshots
  • The potential impact of the vulnerability

Do not include private KB content, credentials, tokens, or other sensitive material in the report unless we explicitly ask for a safe way to receive it.

Response Timeline

  • Acknowledgment: within 48 hours
  • Initial assessment: within 1 week
  • Resolution target: depends on severity, typically within 30 days

There aren't any published security advisories