Skip to content

Security: vineethsai/asi

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

Please do not open public GitHub issues for unpatched security vulnerabilities.

Use one of the following channels:

  • GitHub Security Advisories (preferred): open a private report in this repository
  • If private reporting is unavailable, contact project maintainers directly and include:
    • clear reproduction steps
    • impacted version/commit
    • proof of impact
    • suggested remediation (if available)

Scope

This policy covers:

  • the website source code
  • build/deploy workflows
  • dataset ingestion and rendering paths

Response Expectations

  • Initial triage acknowledgment target: within 5 business days
  • Valid reports receive status updates as remediation progresses
  • Public disclosure should occur only after a fix or coordinated mitigation is available

Safe Harbor

Good-faith security research and responsible disclosure are welcome.

There aren’t any published security advisories