Skip to content

Security: RaffLesiia/rafflab-identity

SECURITY.md

Security Policy

Supported Versions

Security fixes are provided for the latest versions available in this repository.

Framework integrations are supported only with the resource versions listed in their README files. Modified resources, unsupported versions, and force-applied patches are not covered.

Reporting a Vulnerability

Use the repository's private Report a vulnerability feature when available.

If private reporting is unavailable, open a short public issue asking for a private contact method. Do not publicly share exploit details, credentials, player information, database contents, private logs, or server connection details.

Please include:

  • The affected RaffLab Identity component and version
  • Your framework and resource versions
  • Clear reproduction steps
  • The expected impact
  • Relevant server-side logs with sensitive information removed

Please allow reasonable time to investigate and publish a fix before public disclosure.

There aren't any published security advisories