Skip to content

Security: rvaquerizo4/MarketPulseBot

Security

SECURITY.md

Security Policy

Supported Versions

Only the latest version on main is considered supported.

Reporting a Vulnerability

Please do not open public issues for sensitive vulnerabilities.

Report privately by contacting the repository owner with:

  • A description of the issue
  • Impact assessment
  • Reproduction steps
  • Suggested mitigation (if available)

You will receive an acknowledgment as soon as possible.

Secret Handling

  • Never commit .env.
  • Rotate Telegram bot tokens immediately if exposed.
  • Keep chat IDs private when command access is restricted.

There aren't any published security advisories