Skip to content

Security: astroraul/orbitguard

Security

SECURITY.md

Security Policy

Supported versions

OrbitGuard ships from main. Only the current main HEAD is supported. There is no LTS branch.

Reporting a vulnerability

Do not open a public GitHub issue for security problems.

Email security@mayanspace.com with:

  • A description of the vulnerability and its impact
  • Steps to reproduce (proof-of-concept welcome)
  • The affected commit SHA (or the live demo URL if observed there)
  • Your name/handle for credit, if you want it

We will acknowledge receipt within 5 business days and aim to provide a remediation plan within 30 days.

Scope

In scope:

  • The static site at https://astroraul.github.io/orbitguard/
  • The contents of this repository

Out of scope:

  • Third-party services we link to (CelesTrak, Google Fonts, jsDelivr/CDN providers)
  • Browser bugs unrelated to OrbitGuard's own code

Disclosure policy

We follow coordinated disclosure. Please do not publicly disclose the issue until we have shipped a fix, or until 90 days have passed from your initial report — whichever comes first.

Thank you for helping keep OrbitGuard and its users safe.

There aren't any published security advisories