vriteio / vrite

Open-source developer content platform
https://vrite.io
Other
1.63k stars 65 forks source link

Trying to get in touch regarding a security issue #31

Closed psmoros closed 1 year ago

psmoros commented 1 year ago

Hello 👋

I run a security community that finds and fixes vulnerabilities in OSS. A researcher (@coderbm1) has found a potential issue, which I would be eager to share with you.

Could you add a SECURITY.md file with an e-mail address for me to send further details to? GitHub recommends a security policy to ensure issues are responsibly disclosed, and it would help direct researchers in the future.

Looking forward to hearing from you 👍

(cc @huntr-helper)

areknawo commented 1 year ago

Hi, Thanks for reaching out! Vrite is still a relatively young project and I'm aware that it has room to improve - especially on the security front.

Following your recommendation I created a SECURITY.md file and a dedicated email address for any security reports. Please, send the details on the vulnerability to security@vrite.io.

Thanks!