Skip to content

Security: Icather/dsh-clean-desktop-shell

Security

SECURITY.md

安全策略(Security Policy)

支持版本(Supported Versions)

版本 支持状态
0.1.x ✅ 积极维护
< 0.1 ❌ 不再支持

报告漏洞(Reporting a Vulnerability)

不要在公开的 Issue 或讨论区披露安全问题。请通过 GitHub 的私有渠道报告:

  1. 打开仓库页 → Security 标签页 → Report a vulnerability(Advisory 私密报告)
  2. 或者发送邮件/私信给维护者,标题注明 [SECURITY]

请在报告中包含:

  • 受影响的版本
  • 漏洞类型与危害描述
  • 可复现步骤(如能提供最小复现代码更好)
  • 你建议的修复方向(可选)

我们会在 72 小时内确认收到,并尽快评估与修复。在修复发布前,请对外保密该漏洞。

漏洞处理流程

  1. 维护者确认漏洞并评估影响范围
  2. 修复并发布补丁版本(通常为 patch 版本)
  3. 在修复版本发布后,公开漏洞细节(如需公开)

Security Policy

Reporting a Vulnerability

Please do not disclose security issues in public issues or discussions. Report privately instead:

  1. Repository page → Security tab → Report a vulnerability (private advisory)
  2. Or message the maintainer with [SECURITY] in the subject

Include: affected versions, vulnerability description, reproduction steps, and a suggested fix if possible. Reports are acknowledged within 72 hours.

There aren't any published security advisories