Skip to content

Commit c3c156f

Browse files
committed
docs: add security policy
1 parent 99967c7 commit c3c156f

1 file changed

Lines changed: 23 additions & 0 deletions

File tree

SECURITY.md

Lines changed: 23 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,23 @@
1+
# Security Policy
2+
3+
## Supported Versions
4+
5+
Security fixes are provided for the latest released version of `agent-device`.
6+
7+
| Version | Supported |
8+
| -------------- | --------- |
9+
| Latest release ||
10+
| Older releases ||
11+
12+
## Reporting a Vulnerability
13+
14+
Please report vulnerabilities privately through
15+
[GitHub Security Advisories](https://github.com/callstack/agent-device/security/advisories/new).
16+
Do not open a public issue or pull request for an undisclosed vulnerability.
17+
18+
Include the affected version, impact, reproduction steps, and any suggested fix. Never include real
19+
credentials or personal data; use clearly fake values in examples.
20+
21+
We aim to acknowledge reports within three business days and provide a status update within seven
22+
days. We will confirm whether the report is accepted or declined and coordinate any fix and public
23+
disclosure with the reporter.

0 commit comments

Comments
 (0)