Skip to content

Security: D4-Community/d4community

Security

SECURITY.md

Security Policy

We take the security of the D4 Community platform seriously. If you discover a vulnerability or security flaw on our website, we appreciate your help in reporting it responsibly so we can keep our community hub safe.


Supported Versions

Because this repository powers a live web application, security updates are applied directly to our main production deployment. We only support and patch the active development branch.

Version / Branch Supported
master (Latest)
All past commits

Reporting a Vulnerability

Please do not open public issues for security bugs. Sharing vulnerabilities publicly puts the community website at risk before we have a chance to patch it.

Instead, please report security issues through the following steps:

  1. Send an email directly to [email protected].
  2. Include a clear description of the vulnerability, the impact it could have, and the exact steps (or a proof-of-concept script/screenshot) needed to reproduce it.

What to Expect Next

  • Acknowledgment: A member of our team will acknowledge your report within 24 to 48 hours.
  • Updates: We will keep you updated via email as we investigate and work on a fix.
  • Resolution: Once patched, we'll give you a shoutout (if you want one!) for helping protect the community.

Thank you for keeping the D4 Community safe!

There aren't any published security advisories