Skip to content

Security: Devgambo/CodeSync

Security

SECURITY.md

Security Policy

Supported Versions

We provide security updates for the following versions of this project:

Version Supported
1.0.x ✅ Yes

Reporting a Vulnerability

If you discover a security vulnerability in Hackverse, please report it privately so we can investigate and address it promptly.

1. Where to Report

Send an email to priyanshukrai626@gmail.com with the subject line:
"Security Vulnerability Report – Hackverse"

Include the following:

  • A clear description of the issue
  • Steps to reproduce (preferably with a proof-of-concept)
  • Affected Hackverse version(s)

2. Response Timeline

We will:

  • Acknowledge receipt within 72 hours
  • Investigate and update you on the status regularly

3. What to Expect

  • Accepted vulnerabilities
    We'll coordinate a fix timeline, publish a security advisory, and release a patched version. Credit will be given to the reporter (unless anonymity is requested).

  • Invalid/Out-of-scope reports
    If the issue is not considered a vulnerability (e.g., intended behavior), we will explain the decision.

4. Public Disclosure Policy

Please allow us at least 30 days to prepare a fix and public advisory before disclosing the vulnerability publicly. If we need more time, we’ll communicate clearly with an updated timeline.


Thank you for helping keep Hackverse secure.

There aren’t any published security advisories