Skip to content

Security: G-Core/fastedge-wizard-apps

SECURITY.md

Security Policy

Supported Versions

This project is maintained by Gcore.

Notice on security vulnerabilities found in Gcore-owned systems

Gcore takes the security of our software, systems, and services seriously. This includes all source code repositories managed through our GitHub organization at https://github.com/g-core and our digital assets listed below. If you believe you have found a security vulnerability in any Gcore-owned system or repository, please report it to us as described below in accordance with our vulnerability disclosure policy.

Reporting Security Issues

Please do not report security vulnerabilities through public GitHub issues or other public channels. Instead, please report them to our security team via email:

Please include the following information to help us triage your report:

  • Type of vulnerability (e.g., XSS, SQLi, RCE, etc.)
  • Affected system/URL and version (if applicable)
  • Step-by-step instructions to reproduce the issue
  • Proof-of-concept code or screenshots (if available)
  • Potential impact of the vulnerability
  • Any additional context or configuration details

For urgent matters, please include "Urgent Security Report" in your subject line.

In-Scope Systems

This policy applies to the following Gcore assets:

Out-of-Scope Systems

The following are explicitly excluded from our bug bounty program:

  • Third-party systems and services
  • hosting.gcore.com
  • kvm.gcore.com
  • dci.gcore.com
  • support.gcore.com (Zendesk portal)
  • *.gcdn.co
  • roadmap.gcore.com
  • meet.gcore.com and related video demo apps
  • Denial of Service (DoS/DDoS) vulnerabilities
  • Social engineering or physical attacks
  • Non-exploitative informational disclosures
  • UI/UX bugs and spelling errors

Preferred Languages

We prefer all communications to be in English.

Policy

Gcore follows coordinated vulnerability disclosure practices as outlined in our:

Valid reports may qualify for rewards through our bug bounty program. Please review our full program details for eligibility requirements and reward guidelines.


Security Researchers: We appreciate your efforts to make Gcore safer. For career opportunities, visit Gcore Careers. Canonical Policy: https://gcore.com/.well-known/security.txt

There aren't any published security advisories