Hotelsort is a static HTML, CSS, and JavaScript project. Security review applies to public website files, third-party assets, front-end dependencies, and repository configuration.
Do not disclose suspected vulnerabilities publicly before the repository owner has had time to review them.
Preferred reporting path:
- Use GitHub private vulnerability reporting if it is enabled for this repository.
- If private vulnerability reporting is not available, contact the repository owner privately through GitHub.
- A clear description of the issue.
- Steps to reproduce the issue.
- Affected files, URLs, or dependencies.
- Potential impact.
- Any safe proof of concept that helps confirm the issue.
The repository owner will review valid reports, prioritize the fix based on impact, and publish updates when appropriate. Reports involving unrelated services, social engineering, spam, or denial-of-service testing may be closed without action.