allinurl / goaccess

GoAccess is a real-time web log analyzer and interactive viewer that runs in a terminal in *nix systems or through your browser.
https://goaccess.io
MIT License
18.12k stars 1.1k forks source link

Trying to get in touch regarding a security issue #2164

Closed zidingz closed 3 years ago

zidingz commented 3 years ago

Hey there!

I'd like to report a security issue but cannot find contact instructions on your repository.

If not a hassle, might you kindly add a SECURITY.md file with an email, or another contact method? GitHub recommends this best practice to ensure security issues are responsibly disclosed, and it would serve as a simple instruction for security researchers in the future.

Thank you for your consideration, and I look forward to hearing from you!

(cc @huntr-helper)

allinurl commented 3 years ago

Thanks so much for reporting this. I went ahead and added the SECURITY.md policy. Please take a look at it and let me know if you have any questions.

allinurl commented 3 years ago

It looks like this was an issue on the goaccess website and not in the project. However, I do appreciate you taking the time to report any issues.

Feel free to reopen it or report any other issues as needed. Thanks!

zidingz commented 3 years ago

Thanks for taking the time to review!