The security of NCD is a top priority. If you have discovered a security vulnerability in NCD, please follow the guidelines below for reporting it.
Please do not disclose the vulnerability publicly or to any third parties. Responsible disclosure is crucial for the security of the users.
Send an email to [email protected] with the following information:
- A clear and detailed description of the vulnerability.
- The steps to reproduce the vulnerability.
- Any potential impacts of the vulnerability.
- Any suggested fixes or mitigations, if you have any.
I will respond to your email as soon as possible, acknowledging the receipt of your report. After the initial reply, I will keep you informed of the progress towards a fix and full announcement.
Once the vulnerability is analyzed and confirmed, a security patch will be worked on. After the fix is deployed, if you agree, I would like to publicly acknowledge your responsible disclosure in the project’s README or other appropriate channels.
NCD is designed with security in mind, but no software is completely immune from vulnerabilities. I am committed to ensuring the security of NCD and its users.
- Code Reviews: All code changes go through a thorough review process to identify and fix potential security issues.
- Dependencies: I strive to keep all third-party dependencies up to date and regularly check for known vulnerabilities.
- Testing: Regular testing is conducted to ensure the stability and security of NCD.
For the latest security updates, please ensure you are using the most recent version of NCD and regularly check the project’s GitHub repository.
Thank you for helping to keep NCD and its community safe.
NCD