Skip to content

Security: event4u-app/data-helpers

Security

SECURITY.md

Security Policy

Supported Versions

We release patches for security vulnerabilities for the following versions:

Version Supported
1.x.x

Reporting a Vulnerability

If you discover a security vulnerability within this package, please send an email to m.berg@event4u.app. All security vulnerabilities will be promptly addressed.

Please do not create a public GitHub issue for security vulnerabilities.

What to include in your report:

  • Description of the vulnerability
  • Steps to reproduce the issue
  • Possible impact
  • Suggested fix (if any)

What to expect:

  • Acknowledgment: We will acknowledge receipt of your vulnerability report within 48 hours
  • Assessment: We will assess the vulnerability and determine its severity
  • Fix: We will work on a fix and release a patch as soon as possible
  • Credit: We will credit you in the security advisory (unless you prefer to remain anonymous)

Security Updates

Security updates will be released as patch versions and documented in the CHANGELOG.

Best Practices

When using this package:

  • Always use the latest stable version
  • Keep your dependencies up to date
  • Follow PHP security best practices
  • Validate and sanitize user input before passing it to Data Helpers methods
  • Be cautious when using wildcards with untrusted data

Contact

For security-related questions or concerns, contact:

There aren't any published security advisories