If you discover a security vulnerability, please report it responsibly.
- Do not create a public issue for sensitive vulnerabilities
- Contact the maintainer directly via email: santraakash999@gmail.com
- Provide detailed steps to reproduce the issue
- Include possible impact and suggestions (if any)
- JWT-based authentication
- Secure password handling and encryption
- Use of environment variables for sensitive data
- API key isolation for external services
- Input validation and sanitization
Currently, only the latest version of the project is actively maintained and supported with security updates.
Security is taken seriously. Responsible disclosure helps keep the platform safe for all users.