If you discover a security vulnerability within Infra Map, please report it responsibly. We take the security of our project and its users seriously.
Do not open a public issue for security vulnerabilities. Instead, please report them directly to the project maintainers.
Send an email to the project maintainers with the following details:
- A description of the vulnerability and its potential impact
- Steps to reproduce the issue
- The version(s) affected
- Any potential mitigations you have identified
We will acknowledge your report within a reasonable timeframe and work with you to understand and address the issue.
- We will confirm receipt of your report
- We will work with you to understand the scope and impact
- We will develop a fix and coordinate a release timeline
- We will credit you in our release notes (unless you wish to remain anonymous)
Security updates are applied to the latest release version. Users are encouraged to keep their installations up to date.
We follow a coordinated disclosure process. Once a fix has been developed and released, we will publish a security advisory and notify all reporters.