We actively maintain and provide security updates for the following versions of our package:
version | Description |
---|---|
1.x | ✅ Security fixes |
If you are using an unsupported version, we recommend upgrading to the latest release to ensure you receive important security updates.
-
Reporting a Vulnerability If you discover a security vulnerability in our package, we encourage you to report it as soon as possible. Please follow these steps:
-
Do not disclose publicly. Report the issue privately to avoid exposing the vulnerability to potential attackers.
-
Contact us securely: Send an email to [email protected] with the following details:
- A clear description of the vulnerability.
- Steps to reproduce the issue.
- Potential impact and suggested mitigation if possible.
- Any relevant logs or screenshots.
-
Acknowledgment: We will acknowledge receipt of your report within 48 hours and provide a timeline for fixing the issue.
-
Resolution: Once the vulnerability is confirmed and a fix is prepared, we will release an update and notify affected users.
To ensure the security of your application when using our package, we recommend the following best practices:
- Keep your package updated to the latest version.
- Review changes in each release by checking our Changelog.
- Follow Laravel's security guidelines for secure deployment.
- Use proper environment variable management to avoid exposing sensitive data.
Once a fix has been released, we will disclose details about the vulnerability in a responsible manner. We will provide a summary of the issue, affected versions, and recommended actions in our release notes.
If you have any further questions regarding our security policies, feel free to reach out via our GitHub Issues or contact our security team directly.