Skip to content

Security: umgraphics/paywaz-public-api

Security

SECURITY.md

Security Policy

Security is a top priority at Paywaz.
If you believe you’ve discovered a vulnerability that could affect Paywaz systems, SDKs, APIs, or documentation, please follow this policy.


Supported Projects

This security policy applies to:

  • paywaz-public-api
  • paywaz-sdk-js
  • paywaz-docs
  • paywaz-samples
  • paywaz-license
  • Any official Paywaz open-source project or SDK

Reporting a Vulnerability

Do NOT open a public GitHub issue.

Please email:

security@paywaz.com

Include:

  • Description of the issue
  • Affected repo(s)
  • Proof-of-concept if available
  • Steps to reproduce
  • Recommended mitigations (optional)

We aim to acknowledge vulnerability reports within 48 hours, and provide a remediation plan within 5 working days.


Responsible Disclosure

We request:

  • No public disclosure until our fix is released
  • No exploitation of the vulnerability
  • No disruption to Paywaz services or network

We appreciate responsible researchers and will credit them (optional) after resolution.


Security Updates

Maintainers will:

  • Prioritize critical vulnerabilities
  • Patch supported versions
  • Publish release notes for security fixes
  • Update documentation as needed

Thank You

We deeply appreciate all responsible security researchers and contributors who help keep the Paywaz ecosystem safe and trustworthy.

There aren’t any published security advisories