If you discover a security vulnerability in this project, please help us by reporting it responsibly.
Please DO NOT create a public GitHub issue for security vulnerabilities.
Instead, please report security vulnerabilities by emailing: security@bjornleonhenry.com
Include the following information in your report:
- A clear description of the vulnerability
- Steps to reproduce the issue
- Potential impact of the vulnerability
- Any suggested fixes or mitigations
- Acknowledgment: You will receive an acknowledgment of your report within 48 hours
- Investigation: We will investigate the issue and determine its severity
- Updates: We will provide regular updates on our progress
- Resolution: Once resolved, we will publicly disclose the vulnerability after providing time for users to update
- We follow responsible disclosure practices
- We will credit researchers who report vulnerabilities (unless they prefer to remain anonymous)
- We will not pursue legal action against researchers who report vulnerabilities in good faith
Security updates will be applied to the latest stable version of this project.
| Version | Supported |
|---|---|
| Latest | ✅ |
| < Latest | ❌ |
When deploying this application, consider:
- Keeping dependencies updated
- Using HTTPS in production
- Implementing proper authentication and authorization
- Regular security audits of your deployment
- Monitoring for suspicious activity
For questions about security best practices, please contact us at security@bjornleonhenry.com.