At this stage, security updates are provided for the latest default branch.
Please report security issues privately and do not open public GitHub issues for sensitive findings.
Preferred private reporting channel:
- GitHub Security Advisories: https://github.com/BerryBytes/01cloud-api-gateway/security/advisories/new
If private advisories are unavailable for your account, contact the repository maintainers through the BerryBytes organization profile and request a private follow-up:
Include the following details:
- Summary of the vulnerability
- Affected files/components
- Reproduction steps or proof of concept
- Potential impact
- Suggested remediation (if available)
- We acknowledge receipt within 3 business days.
- We validate and triage the report.
- We provide status updates during investigation.
- We prepare and release a fix.
- We coordinate responsible disclosure once patching is complete.
- Please avoid testing against systems you do not own or have permission to test.
- Do not exfiltrate data, disrupt service, or degrade availability.
Thank you for helping keep this project and its users safe.