Skip to content

Security: yaus/broken-arrow-deck-manager

Security

SECURITY.md

Security Policy

Supported Versions

This project is maintained on a rolling latest-release basis.

Version Supported
1.0.x Yes
< 1.0 No

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

Use one of these channels instead:

  • GitHub Private Vulnerability Reporting / Security Advisories for this repository, if enabled
  • Contact the maintainer directly through GitHub: @yaus

When reporting, include:

  • a short description of the issue
  • affected version or commit
  • steps to reproduce
  • impact assessment
  • any proof-of-concept, logs, or screenshots that help verify the issue

Response Expectations

Security reports are handled on a best-effort basis. The maintainer will try to:

  • acknowledge receipt within 7 days
  • validate the report and determine severity
  • coordinate a fix before public disclosure when possible

Disclosure Guidance

Please allow reasonable time for investigation and remediation before public disclosure.

If you are unsure whether something is security-sensitive, report it privately first.

Scope

This policy applies to the source code and packaged releases of Broken Arrow Deck Manager in this repository.

Third-party dependencies, the Broken Arrow game itself, Steam, Windows, and other external software should be reported to their respective maintainers or vendors when appropriate.

There aren't any published security advisories