Skip to content

Latest commit

 

History

History
38 lines (25 loc) · 1.14 KB

File metadata and controls

38 lines (25 loc) · 1.14 KB

Security Policy

Supported Versions

Version Supported
0.1.x

Reporting a Vulnerability

If you discover a security vulnerability in OrbCode, please report it privately.

Do not open a public issue.

Instead, email us at support@matterai.so with:

  • A description of the vulnerability
  • Steps to reproduce (if applicable)
  • Potential impact
  • Any suggested fixes or mitigations

We will acknowledge receipt within 48 hours and provide a more detailed response within 5 business days. We ask that you give us a reasonable amount of time to address the issue before disclosing it publicly.

Disclosure Policy

When we receive a security report, we will:

  1. Confirm the issue and determine its severity
  2. Develop a fix and test it
  3. Release a patched version
  4. Publicly disclose the issue with credit to the reporter (if desired)

Security Best Practices for Users

  • Keep your Node.js version up to date (we support Node.js >= 20)
  • Run the plugin only in trusted environments
  • Review the proxy settings before enabling
  • Report any suspicious behavior immediately