Skip to content

Security: tomasbal/1password-dot-env-sync

SECURITY.md

Security Policy

Supported Versions

We release updates to this project frequently. Below is a list of versions currently supported for security updates:

Version Supported
>1.x.x

Reporting a Vulnerability

If you discover a security vulnerability within this project, please report it immediately. I appreciate your help in improving the security of our project.

How to Report

  1. Email: Send an email to [email protected] with the details of the vulnerability.

    • Include the following information:
      • A brief description of the vulnerability.
      • Steps to reproduce the issue.
      • Potential impact.
      • Any suggested fix or mitigation.
  2. Response Time: I will acknowledge your email within 72 hours and will investigate the issue. If the vulnerability is confirmed, I will work to fix it as soon as possible.

  3. Disclosure: Please do not publicly disclose the vulnerability until I have addressed it and notified you that it has been fixed.

Responsible Disclosure

We follow responsible disclosure guidelines. If you have responsibly disclosed a vulnerability to us, we will:

  • Work with you to understand and resolve the issue promptly.
  • Provide you with a timeline for when the vulnerability will be fixed.
  • Acknowledge your contribution in our release notes if you wish to be credited.

Thank you for helping us keep this project secure!

There aren’t any published security advisories