Skip to content

Security: alltuner/vaultuner

Security

SECURITY.md

Security Policy

Reporting a vulnerability

If you discover a security vulnerability in any All Tuner Labs project, please report it responsibly by emailing security@alltuner.com.

Please include:

  • A description of the vulnerability
  • Steps to reproduce (if applicable)
  • The affected project and version

What to expect

  • We will acknowledge your report within 7 days
  • We will work with you to understand and resolve the issue
  • We will credit you in the fix (unless you prefer to remain anonymous)

Scope

This policy applies to all public repositories under the alltuner GitHub organization.

Out of scope

  • Vulnerabilities in third-party dependencies (please report those upstream)
  • Social engineering attacks
  • Denial of service attacks

As a small independent studio, we can't offer a bug bounty program, but we deeply appreciate responsible disclosure and will always credit your contribution.

There aren’t any published security advisories