Skip to content

Security: shoshins/apple-receipt

SECURITY.md

Security Policy

Supported Versions

This repository is committed to providing security updates for the following versions:

Version Supported
.Models > 2.0
.Parser > 2.0
.Verificator > 2.0

Ensure that you are using one of the supported versions to receive timely security updates. Deprecated versions may not receive prompt attention for security issues.

Reporting a Vulnerability

We take security seriously and encourage the responsible disclosure of vulnerabilities. If you discover a security issue, please follow these guidelines:

1. Reporting Process:

  • Direct all security-related communication to info@shoshins.com.
  • Provide a detailed description of the vulnerability, including steps to reproduce if possible.
  • Include any relevant logs, screenshots, or other supporting information.

2. Response Time:

  • You can expect an initial response within 72 hours of your report.
  • We will keep you informed about the progress of the resolution.

3. Vulnerability Assessment:

  • Our team will assess the reported vulnerability and determine its validity.

4. Resolution:

  • If the vulnerability is accepted, we will work to address and patch it promptly.
  • If the vulnerability is declined, we will provide a detailed explanation of our decision.

5. Security Updates:

  • Security patches will be released as soon as they are available and verified.

6. Coordinated Disclosure:

  • We appreciate responsible disclosure and may request that you do not publicly disclose the vulnerability until a fix is in place.

Your cooperation in responsible disclosure helps us maintain the security of the project. Thank you for contributing to the safety and integrity of the Apple Receipt project.

There aren’t any published security advisories