Skip to content

Security: GitCorteX/gitcortex-webapp

Security

SECURITY.md

Security Policy

Supported Versions

Use this section to tell people about which versions of your project are currently being supported with security updates.

Version Supported
5.1.x
5.0.x
4.0.x
< 4.0

🚨 Reporting a Vulnerability

If you discover a security vulnerability in GitCortex, please DO NOT report it publicly. Instead, follow these steps:

📩 1. Contact the Security Team

Email us at: [email protected] with:
✅ A clear description of the vulnerability
✅ Steps to reproduce the issue
✅ Any recommended fixes

2. Our Response Timeline

We will:

  • Acknowledge your report within 48 hours
  • Investigate & fix within 7-14 days
  • Release a patch as soon as possible

🔒 Security Best Practices

For Contributors

DO NOT expose API keys or secrets in the code
Sanitize user input to prevent XSS & SQL injection
✅ Follow GitHub Security Advisories

For Users

Keep GitCortex updated to the latest version
✅ Use GitHub OAuth for authentication (instead of personal tokens)
✅ Report any suspicious activity immediately

🔗 References


🔹 Your security matters. Help us keep GitCortex safe! 🔹

There aren’t any published security advisories