Skip to content

Latest commit

 

History

History
38 lines (21 loc) · 2.16 KB

SECURITY.md

File metadata and controls

38 lines (21 loc) · 2.16 KB

Security Policy

Supported Versions

The Career Compass project is currently supporting the following versions:

Version Supported
Python 3.10.x
Django 5.0.x

Reporting a Vulnerability

Security is to be taken seriously. If you believe you have found a security vulnerability in this project, you are encouraged to responsibly disclose it by following these guidelines:

  1. Do Not Publicly Disclose: Please do not publicly disclose the vulnerability until we have had a chance to review and address it.

  2. Submit a Report: You can submit a report by sending an email to [email protected]. Please include detailed information about the vulnerability, including steps to reproduce it if possible.

  3. Provide Contact Information: Include your contact information in the report so that we can reach out to you for further clarification or discussion if needed.

  4. Be Patient: We will do our best to acknowledge your report in a timely manner and keep you informed of our progress as we work to address the vulnerability.

Responsible Disclosure Guidelines

We ask that you adhere to the following guidelines when reporting security vulnerabilities:

  • Do Not Exploit the Vulnerability: Please do not attempt to exploit the vulnerability for any reason other than to demonstrate its existence to us.

  • Keep Communications Confidential: Please keep any communications related to the vulnerability confidential and do not share them with others.

  • Provide Sufficient Information: Please provide sufficient information about the vulnerability to allow us to reproduce and validate it.

  • Do Not Violate Privacy or Terms of Service: Please do not violate the privacy of others, tamper with our services, or violate any terms of service in the course of researching or reporting security vulnerabilities.

Acknowledgments

We would like to thank all individuals and organizations who responsibly disclose security vulnerabilities to us. Your contributions help us maintain the security and integrity of our project.