Skip to content

Latest commit

 

History

History
54 lines (37 loc) · 1.67 KB

SECURITY.md

File metadata and controls

54 lines (37 loc) · 1.67 KB

Security Policy

Supported Versions

We release patches for security vulnerabilities. Currently supported versions:

Version Supported
1.x.x

Reporting a Vulnerability

We take the security of CSS Animation Showcase seriously. If you believe you have found a security vulnerability, please report it to us as described below.

Please follow these steps:

  1. DO NOT disclose the vulnerability publicly
  2. Send a detailed report to iamshafqatkhan@gmail.com including:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact
    • Suggested fix (if any)
  3. Allow up to 48 hours for an initial response
  4. Please do not share the vulnerability with others until we've had a chance to address it

What to expect:

  • Initial Response: Within 48 hours
  • Progress Updates: Every 24-48 hours
  • Resolution Timeline: Depends on complexity

Our commitments:

  • Prompt acknowledgment of your report
  • Regular updates about our progress
  • Credit for responsible disclosure (if desired)
  • Notification when the vulnerability is fixed

Best Practices

While our project focuses on CSS animations, we recommend following these security best practices:

  1. Keep all dependencies up to date
  2. Use Content Security Policy (CSP) headers
  3. Implement proper sanitization for any user inputs
  4. Follow secure coding practices
  5. Regular security audits of dependencies

Contact

For security-related matters, please contact: