Skip to content

Security: coderanik/Glyph

Security

SECURITY.md

Security Policy

Supported Versions

We actively support and patch security vulnerabilities in the latest stable release of Glyph. We recommend all users keep their deployments up to date to ensure they have the latest security updates.

Version Supported
< 1.0.0

Reporting a Vulnerability

We take the security of Glyph seriously. If you find a security vulnerability, please do not open a public issue. Instead, report it through one of the following channels:

  1. GitHub Private Vulnerability Reporting: Go to the Security tab of the repository on GitHub and select "Report a vulnerability" (if enabled).
  2. Contacting the Maintainers: Send a message/report directly to the main repository owner at @coderanik.

Please include the following information in your report:

  • A description of the vulnerability and its potential impact.
  • Steps to reproduce the issue (and a proof-of-concept script/exploit if available).
  • Any details on your environment (e.g. Docker configuration, browser version, OS).

Once received, we will:

  • Acknowledge receipt of your report within 48 hours.
  • Work on a fix or mitigation in a private security advisory branch.
  • Coordinate a public release with a credit attribution to you (unless you prefer to remain anonymous).

There aren't any published security advisories