Skip to content

Security: vibtools/CallBridge

Security

SECURITY.md

Security Policy

At Vib Tools, we take the security of our open-source projects, including CallBridge, seriously. We appreciate your efforts to responsibly disclose your findings, and will make every effort to acknowledge your contributions.

Supported Versions

Currently, the main branch and the latest stable release of CallBridge are receiving security updates. If you are using an older version, please upgrade to ensure you have the latest security patches.

Reporting a Vulnerability

DO NOT report security vulnerabilities through public GitHub issues.

If you believe you have found a security vulnerability in CallBridge or any other Vib Tools project, please report it to us privately.

  1. Email us directly at support@vib.tools.
  2. Provide a clear and detailed description of the vulnerability.
  3. Include steps to reproduce the issue (code snippets or a proof-of-concept are highly appreciated).
  4. Do not disclose the vulnerability publicly until we have had a chance to investigate and release a fix.

What happens next?

  1. We will acknowledge receipt of your vulnerability report within 48 hours.
  2. Our team will investigate the issue and determine its impact.
  3. If confirmed, we will develop and test a patch.
  4. We will release an update and, if applicable, credit you for the responsible disclosure.

Thank you for helping us keep Vib Tools software safe and secure for everyone!

There aren't any published security advisories