Skip to content

Security: lncrawl/scraper

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in this project, please report it privately so it can be addressed before public disclosure.

  • Email: lncrawl@pm.me
  • Subject: lncrawl-scraper Security Vulnerability

If email is not available, open an issue with the label security and add a note that the report contains sensitive information.

Supported Versions

This project supports the latest release branch and the previous stable release. Security fixes are applied to supported releases as soon as they are verified.

Security Response Process

  1. Acknowledge receipt within 48 hours.
  2. Investigate and verify the issue.
  3. Coordinate a fix and release.
  4. Publicly disclose the vulnerability only after a patch is available.

What to Include in a Report

Please include as much of the following as possible:

  • Affected version(s)
  • Description of the issue
  • Steps to reproduce
  • Impact or exploitability
  • Any relevant logs, stack traces, or proof-of-concept code

Responsible Disclosure

Please do not publicly disclose vulnerabilities until a fix has been released. This helps protect users and gives the maintainers time to respond.

Acknowledgements

Contributors who responsibly disclose security vulnerabilities may be acknowledged in release notes or changelogs unless they request anonymity.

There aren't any published security advisories