Skip to content

Security: frijal/LayarKosong

Security

SECURITY.md

๐Ÿ” Security Policy / Kebijakan Keamanan

Terima kasih telah membantu menjaga keamanan repository ini.
Thank you for helping keep this repository secure.


๐Ÿ‡ฎ๐Ÿ‡ฉ Bahasa Indonesia

๐Ÿ“ฆ Versi yang Didukung

Hanya branch utama yang saat ini didukung untuk pembaruan keamanan:

Versi Status
main / master โœ… Didukung
Branch lain โŒ Tidak didukung

๐Ÿšจ Pelaporan Kerentanan

Jika Anda menemukan kerentanan keamanan, JANGAN melaporkannya melalui issue publik.

Cara yang disarankan:

  1. Gunakan fitur GitHub Security Advisories
    ๐Ÿ‘‰ https://github.com/frijal/LayarKosong/security/advisories
  2. Sertakan informasi berikut:
    • Deskripsi kerentanan
    • Dampak potensial
    • Langkah reproduksi (jika ada)
    • Saran mitigasi (opsional)

Kami akan meninjau laporan Anda secepat mungkin.


๐Ÿ” GitHub Advanced Security

Repository ini mendukung:

  • Dependabot alerts
  • Dependabot security updates
  • Code scanning (jika tersedia)

Dependensi pihak ketiga dipantau secara berkala untuk mendeteksi kerentanan yang diketahui.


โฑ๏ธ SLA Penanganan

Tahap Estimasi
Konfirmasi laporan โ‰ค 72 jam
Analisis awal 3โ€“7 hari
Perbaikan & rilis Bergantung tingkat risiko

๐Ÿ™ Apresiasi

Kami menghargai kontribusi komunitas dalam menjaga keamanan proyek ini.


๐Ÿ‡ฌ๐Ÿ‡ง English

๐Ÿ“ฆ Supported Versions

Only the default branch currently receives security updates:

Version Status
main / master โœ… Supported
Other branches โŒ Not supported

๐Ÿšจ Reporting a Vulnerability

If you discover a security vulnerability, please DO NOT open a public issue.

Preferred reporting method:

  1. Use GitHub Security Advisories
    ๐Ÿ‘‰ https://github.com/frijal/LayarKosong/security/advisories
  2. Please include:
    • Description of the issue
    • Potential impact
    • Steps to reproduce (if applicable)
    • Suggested mitigation (optional)

We will review your report as quickly as possible.


๐Ÿ” GitHub Advanced Security

This repository supports:

  • Dependabot alerts
  • Dependabot security updates
  • Code scanning (when available)

Third-party dependencies are monitored regularly for known vulnerabilities.


โฑ๏ธ Response Timeline

Stage Estimated Time
Initial acknowledgement โ‰ค 72 hours
Initial assessment 3โ€“7 days
Fix & release Based on severity

๐Ÿ™ Acknowledgements

We appreciate responsible disclosure and community contributions.

There arenโ€™t any published security advisories