Skip to content

Security: pkmdinesh/indiaoceanwatch

Security

SECURITY.md

Security Policy

Supported Versions

Security updates and maintenance patches are actively applied to the latest version on the main branch.

Version Supported
main ✅
< 1.0 ❌

Reporting a Vulnerability

We take the security and integrity of Ocean Watch and its automated advisory data pipeline seriously. If you discover a potential vulnerability or security issue:

  1. Do not open a public issue.
  2. Please report the vulnerability privately via GitHub Security Advisories or contact the project maintainer directly (@pkmdinesh).
  3. Please include:
    • A clear description of the vulnerability and its potential impact
    • Step-by-step reproduction instructions or a minimal proof-of-concept
    • Affected files, workflows, or client endpoints

Response & Disclosure Process

  • Acknowledgement: We aim to acknowledge receipt of vulnerability reports within 48 hours.
  • Investigation: We will triage and assess the reported issue promptly.
  • Remediation & Deployment: Verified security fixes will be developed, tested, committed to main, and deployed directly to GitHub Pages.
  • Recognition: We will appropriately credit security reporters in advisories and commit logs unless anonymity is requested.

There aren't any published security advisories