Skip to content

Security: Orkkoc/gatewaylabs-configdiff

SECURITY.md

Security Policy

Reporting a Vulnerability

If you believe you have found a security issue related to ConfigDiff, please do not open a public GitHub issue.

Please use one of these private paths:

  • GitHub private vulnerability reporting for the repository, if enabled
  • Email: orkun@gatewaylabs.net

What to Include

Please include as much of the following as possible:

  • A clear description of the issue
  • Steps to reproduce
  • Potential impact
  • Affected components or files
  • Any proof-of-concept material that helps validate the report

Do not include secrets, credentials, or real customer data in the report.

Disclosure Approach

Security reports will be reviewed privately. If the report is confirmed, the issue will be addressed and public disclosure can be coordinated after a fix or mitigation is available.

Thanks for helping keep the project and its users safe.

There aren't any published security advisories