Files
itflow/SECURITY.md
2026-08-12 15:27:40 +01:00

1.5 KiB

Security Policy

Please do NOT report security concerns/vulnerabilities publicly

ITFlow stores important information, so we take security seriously

  • Whilst we are confident in the safety of the code, no system is risk-free. Nearly all software has bugs.
  • Use your best judgement before storing highly confidential information in ITFlow.
  • We attempt to follow security best practices where possible, including automated code scanning.

Supported Versions

We operate a rolling release model. Any bug fixes will be released into latest version of ITFlow, so you must stay up-to-date.

Version Supported
26.08

Reporting a Vulnerability via GitHub Security Advisories

Security contact: GitHub Security Advisories

If you have discovered a security issue, please report it to us so we can fix it.

You should expect to receive an initial acknowledgement within 7 days. If you don't receive any feedback, we may have missed the initial email from GitHub (we're human!). Please raise a forum discussion quoting ONLY the assigned GHSA ref.

Note: Please don't submit AI slop. AI can be useful for drafting and research, but you are responsible for reviewing and validating anything you submit. We reserve the right to restrict repository access if you repeatedly ignore this requirement.