If you discover a security vulnerability in any Proyecto 26 project, please report it responsibly.
Do NOT open a public GitHub issue for security vulnerabilities.
- Email: jdnichollsc@gmail.com
- GitHub: Use GitHub's private vulnerability reporting on the affected repository
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if any)
- Acknowledgment: Within 48 hours
- Initial assessment: Within 5 business days
- Fix timeline: Depends on severity, typically within 30 days
We generally support the latest version of each project. Security fixes may be backported to previous major versions on a case-by-case basis.
This policy applies to all repositories under the proyecto26 GitHub organization.