| Version | Supported |
|---|---|
| 1.x | ✅ |
We take the security of AuthKitBundle seriously. Report vulnerabilities privately:
- Email: hectorfranco@nowo.tech
- Do not open a public GitHub issue for security-sensitive bugs.
Please include:
- Type of issue (e.g., XSS, auth bypass, mass registration)
- Affected file(s) and version/tag/commit
- Steps to reproduce
- Impact assessment
- Initial acknowledgment: within 48 hours
- Follow-up status: within 7 days
- Resolution: depends on complexity and impact
We confirm receipt, prepare a fix, coordinate disclosure, and credit responsible disclosure unless anonymity is requested.