Skip to content

Security: fwx5618177/minerva

Security

SECURITY.md

Security Policy

Supported Versions

Use this section to tell people about which versions of your project are currently being supported with security updates.

Version Supported
1.0.x
< 1.0

Reporting a Vulnerability

If you discover a security vulnerability within Minerva, please send an email to [email protected]. All security vulnerabilities will be promptly addressed.

Please include the following information (if possible):

  1. Component(s) affected
  2. A description of the vulnerability
  3. Steps to reproduce
  4. Possible impacts
  5. Suggested fixes (if any)

What to expect

  • You'll receive acknowledgment of your report within 48 hours
  • We'll investigate and keep you updated on our findings
  • Once fixed, we'll notify you and publicly acknowledge your responsible disclosure

Security Best Practices

When using Minerva in your projects:

  1. Always use the latest version
  2. Regularly check for updates
  3. Follow our security guidelines in the documentation
  4. Implement proper Content Security Policy (CSP) headers
  5. Use HTTPS in production environments

Disclosure Policy

When we receive a security bug report, we will:

  1. Confirm the problem and determine affected versions
  2. Audit code to find any similar problems
  3. Prepare fixes for all supported versions
  4. Release new versions and update documentation

There aren’t any published security advisories