Skip to content

Security: cyberwitchery/log

SECURITY.md

security policy

cyber witchery lab builds security and networking tooling. if you find a hole in any of it, i want to hear about it.

reporting

use github’s private vulnerability reporting: open the repo’s security tab and file it there. it’s on for every public repo and should be your default. only fall back to email at contact@cyberwitchery.com if reporting isn’t available.

either way, tell me what you found and, where you can, how to reproduce it. please don’t open a public issue for a security bug.

what happens next

i’ll acknowledge your report, work through it with you, and keep you posted while a fix is in flight. all i ask is a reasonable window to sort it out before anything goes public.

no bounty

these are free, unfunded oss tools, so there’s no bug bounty and no money on offer. i’ll gladly credit you in the advisory if you’d like.

scope

every repo under the cyberwitchery org.

There aren't any published security advisories