Skip to content

Security: uldyssian-sh/vmware-cis-run-checks

.github/SECURITY.md

Security Policy

Supported Versions

Version Supported
Latest
< Latest

Reporting a Vulnerability

If you discover a security vulnerability, please report it responsibly:

How to Report

  • Email: Create an issue with label security
  • Response Time: We aim to respond within 48 hours
  • Updates: You will receive updates every 7 days

What to Include

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if available)

Our Commitment

  • We will acknowledge receipt within 48 hours
  • We will provide a detailed response within 7 days
  • We will work with you to understand and resolve the issue
  • We will credit you in our security advisories (if desired)

Security Best Practices

For Contributors

  • Keep dependencies updated
  • Follow secure coding practices
  • Run security scans before submitting PRs
  • Never commit secrets or credentials

For Users

  • Always use the latest version
  • Report suspicious behavior
  • Follow installation instructions carefully
  • Keep your environment updated

Contact

For security-related questions: Create an issue with security label.

Thank you for helping keep our project secure!

There aren’t any published security advisories