Skip to content

Security: shuaiqideyu/SecAtlas

SECURITY.md

Security Policy

Supported Versions

The main branch contains the latest content. Security fixes are applied directly.

Reporting a Vulnerability

If you discover a security issue in this repository (e.g., exposed credentials, sensitive target info in cases), please:

  1. Do NOT open a public issue
  2. Email the maintainer or use GitHub's private vulnerability reporting
  3. Include the exact file path and line number

Scope

  • Accidental credential exposure in case files or technique cards
  • Sensitive target information in authorized case studies
  • Vulnerable code in tools/ directory

Out of Scope

  • Content quality issues (use regular Issues)
  • Missing technique cards (use Technique Request template)
  • Third-party tools in mirrors/ (report to upstream)

There aren't any published security advisories