Skip to content

Commit dd81304

Browse files
authored
Create security.md
1 parent 01e0543 commit dd81304

File tree

1 file changed

+49
-0
lines changed

1 file changed

+49
-0
lines changed

.github/ISSUE_TEMPLATE/security.md

Lines changed: 49 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,49 @@
1+
2+
```markdown
3+
---
4+
name: 🔒 Security Issue
5+
about: Report a security vulnerability (DO NOT DISCLOSE PUBLICLY)
6+
title: '[SECURITY] Brief security concern'
7+
labels: ['security']
8+
assignees: ''
9+
```
10+
---
11+
12+
## ⚠️ IMPORTANT: SECURITY DISCLOSURE GUIDELINES
13+
14+
**DO NOT disclose vulnerability details publicly**
15+
**This issue will be private to maintainers only**
16+
17+
## 🔍 Vulnerability Type
18+
- [ ] Code vulnerability
19+
- [ ] Configuration issue
20+
- [ ] Dependency vulnerability
21+
- [ ] Ethical concern
22+
- [ ] Privacy issue
23+
- [ ] Other: `[please specify]`
24+
25+
## 📊 Severity Assessment
26+
- [ ] Critical (immediate action required)
27+
- [ ] High (address quickly)
28+
- [ ] Medium (should be fixed)
29+
- [ ] Low (informational)
30+
31+
## 📝 High-Level Description
32+
<!-- High-level description without sensitive details -->
33+
34+
## 🎯 Impact
35+
<!-- What systems or users are affected? -->
36+
37+
## 🔒 Steps for Private Disclosure
38+
1. **Email security details to**: `security@516hackers.org`
39+
2. **Encrypt sensitive information** using PGP if available
40+
3. **Wait for maintainer response** before any public discussion
41+
4. **Coordinate disclosure timeline** with maintainers
42+
43+
## 📚 Public References (if available)
44+
<!-- Any public CVE, advisory, or reference without sensitive details -->
45+
46+
## ⏱️ Response Expectations
47+
- **Initial Response**: Within 48 hours
48+
- **Fix Timeline**: Depends on severity (1-30 days)
49+
- **Disclosure**: Coordinated after fix is available

0 commit comments

Comments
 (0)