Skip to content

Security: qfdk/EasyDockerWeb

SECURITY.md

Security Policy

Reporting a vulnerability

Please do not open a public issue for security problems.

Report privately through GitHub: Security → Report a vulnerability on this repository (private vulnerability reporting), or by email to qfdk2010@gmail.com with the subject [SECURITY] EasyDockerWeb.

Please include the affected version/commit, a description of the issue, and steps to reproduce.

  • Acknowledgement: within 7 days
  • Fix or mitigation plan: within 30 days for high/critical issues
  • Coordinated disclosure: a GitHub Security Advisory (and a CVE when applicable) is published once a fix is available, crediting the reporter unless they prefer otherwise.

Supported versions

Only the latest release / main branch receives security fixes.

There aren't any published security advisories