Skip to content

Security: JtPerez-Acle/secure-biometric

Security

SECURITY.md

Security Policy

Project: Secure Biometric Analysis System
Current Version: 0.2.0


Supported Versions

We actively provide security updates and critical patches for the following versions:

Version Supported?
0.2.x (main)
0.1.x
< 0.1

Note: We recommend all users upgrade to 0.2.x for the latest features and security fixes.


Reporting a Vulnerability

  1. Contact

    • If you discover any security-related issue or vulnerability, please email us immediately at jtperez.acle@gmail.com.
    • Please include the term “SECURITY” in your email subject to ensure timely attention.
  2. What to Include

    • A detailed description of the issue.
    • Steps to reproduce (if applicable).
    • Any relevant logs or screenshots.
    • Potential impact on data integrity, confidentiality, or availability.
  3. Response & Timeline

    • We aim to acknowledge receipt of your report within 2 business days.
    • We will investigate and provide a timeline or update within 7 business days after initial acknowledgment.
    • Critical issues will be addressed with a patch release as soon as possible. You will be notified once a fix or workaround is available.
  4. Confidentiality

    • We kindly request that you do not disclose vulnerability details publicly until we have had a chance to investigate and release a patch (if needed).
    • In the event of a valid vulnerability, you may be credited in our project’s changelog or release notes unless you wish to remain anonymous.
  5. Disclosure Policy

    • After fixing or mitigating the vulnerability, we will publicly disclose the nature of the issue and the mitigation steps.
    • Any additional relevant security advisories or patch instructions will be shared through our official channels (e.g., GitHub Releases, project documentation).

Thank you for helping keep the Secure Biometric Analysis System safe and secure for everyone.

There aren’t any published security advisories