If you discover a security vulnerability in EvoSquares, please help us address it responsibly by following these steps:
-
Do Not Open a Public Issue:
To protect users of the project, avoid discussing vulnerabilities publicly in the issue tracker or elsewhere. -
Contact Us Directly:
Go to the Security tab under the repository name and click on 'Report a vulnerability'- A detailed description of the vulnerability.
- Steps to reproduce the issue.
- Any relevant code or screenshots.
-
Responsible Disclosure:
Please allow us time to address the issue before making any details public. We greatly appreciate your cooperation in protecting the integrity and security of this project.
We are primarily concerned with vulnerabilities that:
- Allow unauthorized access to user data.
- Enable denial-of-service (DoS) attacks.
- Cause unintended behavior that could affect data integrity or system stability.
To ensure your own security while contributing to EvoSquares, follow these guidelines:
- Keep your local development environment updated.
- Avoid committing sensitive information, such as API keys or personal data, to the repository.
Thank you for helping us maintain the security of EvoSquares!