Skip to content

Security: Guard-Core/fiber-guard

Security

SECURITY.md

Security Policy for Fiber Guard

Supported Versions

We currently provide security updates for the following versions of Fiber Guard:

Version Supported
1.2.x ✅
1.1.x ✅
< 1.1.0 ❌

Reporting a Vulnerability

We take the security of Fiber Guard seriously. If you believe you've found a security vulnerability, please follow these steps:

  1. Do not disclose the vulnerability publicly until it has been addressed by the maintainers.

  2. Report the vulnerability through GitHub's security advisory feature:

    • Go to the Security tab of the Fiber Guard repository
    • Click on "New draft security advisory"
    • Fill in the details of the vulnerability
    • Submit the advisory

    Alternatively, you can report vulnerabilities through GitHub's private vulnerability reporting feature.

  3. Include the following information in your report:

    • A description of the vulnerability and its potential impact
    • Steps to reproduce the issue
    • Affected versions
    • Any potential mitigations or workarounds

The maintainers will acknowledge your report within 48 hours and provide a detailed response within 7 days, including the next steps in handling the vulnerability.

Security Considerations

Fiber Guard is a security library: report anything that weakens detection, bypasses rate limiting, leaks secrets into logs, or trusts unvalidated input.

There aren't any published security advisories