Skip to content

Security: kelvinaxhcar/Job-Hangfire-RavenDB

SECURITY.md

Security Policy

Supported Versions

Security updates and patches are actively provided for the following versions:

Version Supported
1.1.x
1.0.x
< 1.0.0

Reporting a Vulnerability

We take the security of Job.Hangfire.Raven6x seriously. If you discover a security vulnerability, please follow responsible disclosure practices to help protect all users of the library.

How to Report

  • Do not open a public issue on GitHub for security vulnerabilities.
  • Please report vulnerabilities privately via GitHub Security Advisories or by contacting the maintainers directly.

What to Include in Your Report

To help us triage and resolve the issue quickly, please provide:

  1. Description: A clear summary of the potential vulnerability.
  2. Impact: An explanation of what an attacker could achieve if the vulnerability is exploited.
  3. Reproduction Steps: A minimal proof-of-concept (PoC) code snippet, payload, or step-by-step instructions.
  4. Suggested Fix: Any recommended patches or remediations (optional).

Our Response Process

  • Acknowledgment: You will receive an initial response acknowledging your report within 48 hours.
  • Assessment: The maintainers will evaluate the severity and reproduce the issue.
  • Fix & Disclosure: Once a fix is developed and tested, a new release will be published to NuGet alongside a security advisory acknowledging your contribution (unless you prefer to remain anonymous).

There aren't any published security advisories