Skip to content

Security: aziontech/azion

SECURITY.md

Security Policy

Supported Versions

Version Supported
4.x ✅️
< 4.0

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

Instead, please report them privately through GitHub Security Advisories:

  1. Go to the Security tab of this repository
  2. Click Report a vulnerability
  3. Fill out the vulnerability report form

If you cannot use GitHub Security Advisories, email us at security@azion.com.

What to include

  • A description of the vulnerability and its impact
  • Steps to reproduce (proof of concept, affected version, configuration)
  • Any known mitigations or workarounds

Disclosure process and timelines

  • Within 3 business days: we acknowledge receipt of your report.
  • Within 10 business days: we confirm the issue and share an initial assessment.
  • Within 90 days: we aim to release a fix and publish a security advisory.

We follow a coordinated disclosure process: please give us time to release a fix before disclosing the issue publicly. We will credit reporters in the advisory unless you ask us not to.

Published advisories for this project are listed at github.com/aziontech/azion/security/advisories. For more on Azion's security practices, see www.azion.com/en/documentation/.

There aren't any published security advisories