Skip to content

Security: Berkay2002/LiTHePlan

Security

.github/SECURITY.md

Security Policy

Supported Versions

LiTHePlan only releases from the default main branch. Security fixes are applied to main and deployed to production as soon as the patch is validated. Older snapshots, tags, or forks are not maintained by the project team.

Reporting a Vulnerability

If you discover a security issue, please help us keep LiTHePlan safe for students and advisors:

Response Process

  1. Triage the report, confirm the impact, and assign a severity within five business days.
  2. Develop and verify a fix in a private branch. Tests, linting, and manual verification are required before release.
  3. Coordinate disclosure with the reporter. By default, we publish a summary in the changelog or release notes after the patch is deployed.
  4. Credit the reporter if they desire recognition and the issue qualifies.

Thank you for helping us keep LiTHePlan secure for its users.

There aren't any published security advisories