This is a template repository developed on a single active branch (main). Security fixes are applied there; there is no parallel maintenance of older versions.
Please report security vulnerabilities using GitHub Security Advisories for this repository. This keeps the report private until a fix is available and gives you a dedicated, trackable thread with the maintainer.
Do not open a public issue for security reports.
What to expect:
- An initial response acknowledging the report.
- Follow-up once the issue has been assessed, including whether it's accepted as a vulnerability and the expected timeline for a fix.
- Credit in the eventual advisory, if you'd like it.
This repository is a Django backend template, not a hosted service — reports should concern the template's own code and configuration (e.g. backend/, config.toml.example, .env.example, docker-compose.yml, CI workflows), not deployments built from it.