Skip to content

Security: dougss/nexus

Security

SECURITY.md

Security Policy

Supported versions

Version Supported
main Yes

Reporting a vulnerability

Please report security issues privately so we can address them before public disclosure.

Include steps to reproduce, affected versions or commits, and impact if known.

Scope

In scope: vulnerabilities in this repository’s code, workflows, and documented usage.

Out of scope: social engineering, denial-of-service against infrastructure you do not own, or issues in third-party services unless they stem from our integration code.

Response

We aim to acknowledge valid reports within a few business days and coordinate disclosure after a fix is available.

There aren't any published security advisories