Skip to content

Security: Darshan3690/The-Dev-Pocket

Security

SECURITY.md

πŸ”’ Security Policy

πŸ“’ Reporting a Vulnerability

If you discover a security vulnerability in The Dev Pocket, please help us by responsibly disclosing it. Do not open a public GitHub issue.

Instead, report it privately to the maintainers:

We will acknowledge your report within 48 hours, investigate, and provide a timeline for a fix.


🚫 Please Do Not

  • Do not publicly disclose the issue until it has been fixed.
  • Do not exploit the vulnerability.
  • Do not use the issue tracker for sensitive reports.

βœ… Our Commitment

  • We will handle all reports discreetly and respectfully.
  • Fixes will be prioritized and released as soon as possible.
  • Credit will be given to security researchers unless they wish to remain anonymous.

πŸ” Supported Versions

We release security updates only for the latest main branch. Users should always keep their installation up-to-date.

Version Supported
Latest (main) βœ… Yes
Older versions ❌ No

Security Best Practices

When using The Dev Pocket, we recommend:

  • Keep your installation up-to-date with the latest version
  • Review security advisories regularly
  • Report any suspicious activity immediately
  • Use environment variables for sensitive data (never hardcode credentials)
  • Follow principle of least privilege when configuring permissions

Contact

For security concerns, reach out to: darshan.rajput369@gmail.com

Thank you for helping keep The Dev Pocket safe and secure! πŸ™

There aren’t any published security advisories