Skip to content

Security: Atlas-Commons/StreamBooru

.github/SECURITY.md

Security Policy

Supported versions

Security fixes are provided for the latest release on the default branch. Older releases may not receive patches.

Reporting a vulnerability

Please do not report security vulnerabilities via public GitHub issues.

Instead, use one of these channels:

  1. GitHub Security AdvisoriesOpen a private report for the affected repository, or use Report a vulnerability on the repository Security tab.
  2. Email — contact the maintainers at stephen@atlastechsolutions.co.uk with details and steps to reproduce.

Include as much detail as possible: affected versions, impact, reproduction steps, and suggested mitigations if you have them.

Response timeline

  • Acknowledgement within 7 days
  • Fix or mitigation plan within 60 days for confirmed issues
  • Coordinated disclosure preferred; please allow time to release a fix before public disclosure

Bug bounty

Atlas Commons does not operate a paid bug bounty program. We appreciate responsible disclosure and credit researchers in release notes when appropriate.

There aren't any published security advisories