Skip to content

Security: a2975667/QSurvey

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

Please report suspected vulnerabilities privately through GitHub's private vulnerability reporting or security advisory flow for this repository, if available.

Do not open a public GitHub issue, discussion, or pull request for a suspected vulnerability. Public reports can expose details before maintainers have a chance to assess and address the issue.

When reporting, include as much of the following as you can:

  • A concise description of the suspected vulnerability.
  • Steps to reproduce or validate the issue.
  • The affected URL, endpoint, component, or commit, if known.
  • Potential impact and any known mitigations.
  • Whether the issue has been disclosed anywhere else.

This is a research project maintained on a best-effort basis. Maintainers will review private reports and coordinate any appropriate fix or disclosure without publishing sensitive details prematurely.

Supported Versions

Security reports should target the current public repository state unless maintainers document a supported release policy elsewhere.

There aren't any published security advisories