Skip to content

Security: Epi-1120/CertlyForge

Security

SECURITY.md

Security Policy / 安全政策

Reporting a Vulnerability / 回報安全漏洞

If you discover a security vulnerability in CertlyForge, please report it responsibly.

如果你發現 CertlyForge 的安全漏洞,請負責任地回報。

Do NOT open a public issue. Instead, email the maintainer directly or use GitHub's private vulnerability reporting.

請勿開公開 Issue。 請直接聯繫維護者或使用 GitHub 的私密漏洞回報功能。

Scope / 範圍

  • Authentication and authorization issues
  • Data exposure or leakage
  • Cross-site scripting (XSS)
  • Firebase security rules bypass
  • Any vulnerability that could affect user data

Response / 回應

We will acknowledge your report within 48 hours and work to resolve critical issues as quickly as possible.

我們會在 48 小時內確認收到你的回報,並盡快修復關鍵問題。

There aren’t any published security advisories