Skip to content

Security: codedunes/synon

Security

SECURITY.md

Security Policy

The Synon project takes security seriously. We appreciate the efforts of security researchers and the community in improving the security of our project. If you discover any security vulnerabilities or potential issues, please follow the guidelines outlined in this document.

Reporting a Security Vulnerability

If you believe you have found a security vulnerability in the Synon project, we encourage you to report it to us promptly. We kindly request that you follow these steps:

  1. Do not disclose the vulnerability publicly until it has been addressed by the project maintainers.

  2. Submit your findings by sending an email to [eddie.akuera@gmail.com] with the subject line "Synon Security Vulnerability".

  3. Provide detailed information about the vulnerability, including:

    • A clear and concise description of the issue.
    • Steps to reproduce the vulnerability.
    • Any potential impact or exploit scenarios.
  4. If possible, provide a proof-of-concept or a sample code that demonstrates the vulnerability.

  5. We will acknowledge your report within 1 day and work with you to understand and address the issue.

  6. Once the vulnerability has been resolved, we will publicly acknowledge your contribution, unless you request to remain anonymous.

Responsible Disclosure

We kindly request that you follow responsible disclosure practices:

  • Allow a reasonable amount of time for the project maintainers to address the reported vulnerability before disclosing it publicly.

  • Do not exploit the vulnerability for any malicious purposes, including unauthorized access, data manipulation, or disruption of services.

  • Do not access or modify the data of others without their explicit permission.

  • Do not perform any actions that may negatively impact the availability, integrity, or confidentiality of the project or its users.

Security Updates and Notifications

The Synon project strives to address security vulnerabilities promptly and provide necessary updates to the community. As part of our commitment to security, we will:

  • Respond to security vulnerability reports in a timely manner.

  • Work towards providing security patches and updates as soon as possible.

  • Communicate with the reporter and the community throughout the resolution process.

  • Release public notifications and advisories about resolved security vulnerabilities, as appropriate.

Recognition

We greatly value the contributions of security researchers in improving the security of the Synon project. If you report a valid security vulnerability, we will acknowledge your contribution in the project's security advisory or in the release notes, unless you request to remain anonymous.

We sincerely appreciate your efforts to improve the security of the Synon project. Thank you for your cooperation and responsible disclosure.

There aren’t any published security advisories