Skip to content

Security: agslima/file-server-management

.github/SECURITY.md

Security Policy

Reporting a Vulnerability

We take the security of this microservice seriously. If you discover a security vulnerability within this project, please follow these steps:

1. Do NOT open a public issue

Publicly creating an issue may put the application at risk before a patch is released. Please keep the vulnerability details private.

2. How to contact

Please send an email to [a.agnaldosilva at gmail.com] with the subject: [SECURITY] Vulnerability Report.

In your email, please include:

  • Type of vulnerability (e.g., SQL Injection, XSS, RCE).
  • Steps to reproduce the issue.
  • The potential impact of the vulnerability.

You can also use the Private Vulnerability Reporting feature on GitHub. Go to the Security tab of this repository -> Advisories -> New draft security advisory.

3. Response Timeline

  • Acknowledgement: I will attempt to acknowledge your report within 48 hours.
  • Fix: If confirmed, I will work on a patch and release it via the CI/CD pipeline (GitHub Actions).

There aren't any published security advisories