Skip to content

Security: Dragon-01-you/lesson-plan-skill

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.x
< 1.0

Reporting a Vulnerability

If you discover a security vulnerability in this project, please report it responsibly.

Please do NOT open a public GitHub issue for security vulnerabilities.

Instead, please send an email to: your-email@example.com

What to include

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

Response timeline

  • Acknowledgment: Within 48 hours
  • Initial assessment: Within 1 week
  • Fix or mitigation: Within 2 weeks (depending on severity)

Security Best Practices

When using this skill:

  1. No API keys in code — Never commit API keys or secrets
  2. Validate inputs — Always validate user inputs before processing
  3. Sandbox execution — Run scripts in a sandboxed environment
  4. Review outputs — Always review AI-generated content before use

Scope

This security policy applies to the lesson-plan-skill repository and its official releases.

There aren't any published security advisories