Skip to content

Security: carlymariec/proportfolio.github.io

SECURITY.md

Security Policy

About This Repository

This repository hosts Carly Marie's personal professional paralegal portfolio — a static website showcasing legal education, skills, and work samples. It contains no back-end servers, user databases, authentication systems, or sensitive application logic.

All documents and work samples included in this portfolio have been sanitized and redacted to protect client confidentiality and personal privacy, in accordance with professional paralegal ethics standards.

Scope

Because this is a static personal portfolio site, the traditional software vulnerability categories (e.g., SQL injection, authentication bypass, remote code execution) do not apply. The following concerns are in scope:

  • Exposed personal or client-identifying information that should have been redacted
  • Sensitive metadata embedded in any uploaded documents or files
  • Malicious content or scripts inadvertently introduced into the site

Reporting a Security or Privacy Concern

If you discover a privacy or security issue — such as unredacted personal information, embedded document metadata, or any content that could compromise client confidentiality — please report it responsibly rather than disclosing it publicly.

To report a concern:

  1. Open a GitHub Security Advisory in this repository (preferred), or
  2. Contact the repository owner directly via GitHub: @carlymariec

Please include a description of the issue and the specific file or location involved. Reports are taken seriously and will be addressed promptly.

Confidentiality Notice

This portfolio is a personal, non-commercial, educational resource. Any legal work samples are provided solely to demonstrate paralegal competencies and have been carefully reviewed to remove all identifying information. No attorney-client privileged or confidential client information is intentionally included.

There aren't any published security advisories