Skip to content

Security: RedberryProducts/laravel-bog-payment

Security

SECURITY.md

Security Policy

Supported Versions

We actively maintain and provide security updates for the following versions of our package:

version Description
1.x ✅ Security fixes

If you are using an unsupported version, we recommend upgrading to the latest release to ensure you receive important security updates.

  1. Reporting a Vulnerability If you discover a security vulnerability in our package, we encourage you to report it as soon as possible. Please follow these steps:

  2. Do not disclose publicly. Report the issue privately to avoid exposing the vulnerability to potential attackers.

  3. Contact us securely: Send an email to [email protected] with the following details:

  • A clear description of the vulnerability.
  • Steps to reproduce the issue.
  • Potential impact and suggested mitigation if possible.
  • Any relevant logs or screenshots.
  1. Acknowledgment: We will acknowledge receipt of your report within 48 hours and provide a timeline for fixing the issue.

  2. Resolution: Once the vulnerability is confirmed and a fix is prepared, we will release an update and notify affected users.

Security Best Practices

To ensure the security of your application when using our package, we recommend the following best practices:

  • Keep your package updated to the latest version.
  • Review changes in each release by checking our Changelog.
  • Follow Laravel's security guidelines for secure deployment.
  • Use proper environment variable management to avoid exposing sensitive data.

Disclosure Policy

Once a fix has been released, we will disclose details about the vulnerability in a responsible manner. We will provide a summary of the issue, affected versions, and recommended actions in our release notes.

Contact

If you have any further questions regarding our security policies, feel free to reach out via our GitHub Issues or contact our security team directly.

There aren’t any published security advisories