Skip to content

Security: KernFerm/PingPong

SECURITY.md

Security Policy

Supported Versions

The following table outlines the versions of pingpong.py that are currently supported with security updates:

Version Supported
0.1.0
< 0.1.0

Reporting a Vulnerability

We take the security of our project seriously. If you discover a vulnerability, please follow the steps below to report it:

  1. Email Us: Send an email to [email protected] with the details of the vulnerability. Please include:

    • A detailed description of the vulnerability.
    • Steps to reproduce the vulnerability.
    • The potential impact of the vulnerability.
    • Any relevant screenshots or logs.
  2. Response Time: You can expect an initial response within 72 hours of your report. We will provide you with regular updates on the status of your reported vulnerability, typically every 7 days.

  3. Handling Reports:

    • Accepted Reports: If the vulnerability is confirmed, we will work with you to remediate the issue. You will be credited for the discovery unless you wish to remain anonymous.
    • Declined Reports: If the vulnerability is not accepted, we will provide a detailed explanation of our decision.
  4. Version Range: Our primary focus is on version 0.1.0. Vulnerabilities found in unsupported versions (<0.1.0) will not be addressed unless they are critical and can be easily mitigated.

  5. Confidentiality: We ask that you keep the details of the vulnerability confidential until it has been resolved.

Thank you for helping us maintain the security and integrity of pingpong.py.

There aren’t any published security advisories