Skip to content

Security: uuhnaut69/rustapi

Security

SECURITY.md

Security Policy

Supported Versions

This project is currently in early development. Security updates are provided for the following versions:

Version Supported
0.1.x
< 0.1

Note: As this project is in early development (pre-1.0), breaking changes may occur between versions. We recommend staying updated with the latest release.

Reporting a Vulnerability

We take security vulnerabilities seriously. If you discover a security vulnerability in this project, please report it responsibly:

How to Report

  1. Email: Send details to the project maintainer(s) via private email (check the repository for contact information)
  2. GitHub Security Advisory: Use GitHub's private vulnerability reporting feature if available
  3. Issues: For non-sensitive security concerns, you may open a public issue

What to Include

Please include the following information in your report:

  • Description of the vulnerability
  • Steps to reproduce the issue
  • Potential impact assessment
  • Suggested fix (if you have one)

Response Timeline

  • Acknowledgment: We aim to acknowledge receipt within 48 hours
  • Initial Assessment: We will provide an initial assessment within 7 days
  • Updates: We will provide regular updates on our progress
  • Resolution: We aim to resolve critical vulnerabilities within 30 days

Disclosure Policy

  • We request that you do not publicly disclose the vulnerability until we have had a chance to address it
  • Once a fix is released, we will work with you on coordinated disclosure
  • We appreciate your responsible disclosure and will acknowledge your contribution (unless you prefer to remain anonymous)

Security Best Practices

When using this API:

  • Always use HTTPS in production
  • Implement proper authentication and authorization
  • Validate all inputs
  • Keep dependencies updated
  • Follow the principle of least privilege
  • Regularly review and audit your deployment configuration

There aren’t any published security advisories