Skip to content

Security: bloo-berries/blindness-visualizer

SECURITY.md

Security Policy

Supported Versions

Version Supported
Latest

Reporting a Vulnerability

If you discover a security vulnerability in this project, please report it responsibly.

Do NOT open a public GitHub issue for security vulnerabilities.

How to Report

  1. Go to the Security Advisories page
  2. Click "New draft security advisory"
  3. Fill in the details of the vulnerability

Alternatively, you can email the maintainer directly via the contact information on their GitHub profile.

What to Include

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

Response Timeline

  • Acknowledgment: Within 72 hours
  • Initial assessment: Within 1 week
  • Fix timeline: Depends on severity, typically within 30 days for critical issues

Scope

This policy covers:

  • The web application code in this repository
  • CI/CD pipeline configurations
  • Dependencies used by the project

Out of scope:

  • The deployed Cloudflare Pages infrastructure itself
  • Third-party services (YouTube, Wistia, Formspree)

There aren't any published security advisories