| FazBrowse GitHub Viewer | Trending | | Home |
| Tools: [Download Repo ZIP] [Original HTTPS Page] |
We take the security of this software seriously and are committed to ensuring that any vulnerabilities are addressed promptly and effectively.
This repository follows the OpenSSF Vulnerability Disclosure guide. You can learn more about it in the Finders Guide.
If you believe you have found a security vulnerability in a hexpm repository, please report it via GitHub Security Vulnerability Reporting at github.com/hexpm/<repository>/security/advisories/new or via email to security@hex.pm if that is more suitable for you.
Please do not report vulnerabilities through public channels such as GitHub issues, discussions, or pull requests, to avoid exposing the details of the issue before it has been properly addressed.
We don't implement a bug bounty program or bounty rewards, but will work with you to ensure that your findings get the appropriate handling.
When reporting a vulnerability, please include as much detail as possible to help us triage and resolve the issue efficiently. Information that will be specially helpful includes:
Our vulnerability management team will respond within 3 working days of your report. If the issue is confirmed as a vulnerability, we will open a Security Advisory. This project follows a 90-day disclosure timeline.
We work together with the Erlang Ecosystem Foundation (EEF) CNA for coordinated vulnerability disclosure and CVE assignment.
If you have any questions about reporting security issues, please contact our vulnerability management team at security@hex.pm.
| Back | FazBrowse Home | New Git URL |