Skip to content

Security: Serennity007/awesome-skills

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.x.x
< 1.0

Reporting a Vulnerability

If you discover a security vulnerability in this project, please report it responsibly.

How to Report

  1. Do NOT open a public GitHub issue for security vulnerabilities
  2. Email security concerns to: [INSERT EMAIL]
  3. Include the following information:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact
    • Suggested fix (if any)

What to Expect

  • Acknowledgment within 48 hours
  • Status update within 5 business days
  • Resolution timeline within 14 business days

Scope

This security policy covers:

  • Skill files that may contain sensitive instructions
  • Any scripts or automation in the repository
  • Documentation that may expose credentials or secrets

Proven Patterns for Contributors

When contributing skills:

  • Never include API keys, tokens, or passwords
  • Never hardcode credentials in skill files
  • Always use placeholder values in examples
  • Review your changes for accidental secret exposure before submitting

Security Advisories

Security advisories will be published on the GitHub Security Advisories page.

There aren't any published security advisories