Skip to content

Security: samithahansaka/perflock

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
0.x.x

Reporting a Vulnerability

If you discover a security vulnerability within this project, please report it responsibly.

Please do NOT open a public GitHub issue for security vulnerabilities.

Instead, please send an email to the maintainers with:

  1. A description of the vulnerability
  2. Steps to reproduce the issue
  3. Potential impact assessment
  4. Any suggested fixes (optional)

We will acknowledge receipt of your report within 48 hours and provide a more detailed response within 7 days, indicating the next steps in handling your submission.

Security Best Practices

When using perflock:

  1. Keep dependencies updated: Regularly update to the latest version
  2. Review configuration: Ensure performance contracts don't expose sensitive timing information
  3. CI/CD security: Protect your NPM_TOKEN and other secrets in GitHub Actions

Thank you for helping keep perflock secure!

There aren't any published security advisories