Skip to content

Security: arg9244/browser-benchmark

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability, please report it responsibly.

📧 Contact

  • Email: security@example.com (replace with actual contact)
  • GitHub Issues: Private vulnerability reports

⏱️ Response Time

  • Critical: 24 hours
  • High: 3 days
  • Medium: 7 days
  • Low: 14 days

📋 What to Include

  • Description of the issue
  • Steps to reproduce
  • Impact assessment
  • Suggested remediation (if any)

Supported Versions

Only the latest version of the project receives security updates.

Scope

Security vulnerabilities in:

  • Application code
  • Dependencies
  • Build process
  • Deployment configuration

Out of scope:

  • User's local environment
  • Third-party services (unless directly caused by our code)
  • Features marked as experimental

Best Practices

  • Keep dependencies updated
  • Use HTTPS in production
  • Validate all user inputs
  • Follow secure coding practices

Acknowledgments

Thank you for helping keep this project secure!

There aren't any published security advisories