Skip to content

Security: EwyBoy/Friends-House

SECURITY.md

Security Policy

Overview

Thank you for using and contributing to the "Friend's House" RuneLite plugin. I take security seriously and appreciate your efforts to responsibly disclose vulnerabilities. This document outlines my policies and procedures for handling security-related issues.

Supported Versions

I support only the latest published version of the "Friend's House" plugin.

Reporting a Vulnerability

If you discover a security vulnerability in the "Friend's House" plugin, please follow the steps below:

  1. Do not disclose it publicly.
  2. Email the details of the vulnerability to me at email.

Please include the following information in your report:

  • A description of the vulnerability and its potential impact.
  • Steps to reproduce the vulnerability.
  • Any proof-of-concept code or screenshots.
  • Your contact information.

I will acknowledge receipt of your report within 48 hours and will strive to provide a detailed response within 5 business days.

Handling Security Issues

I will:

  1. Investigate the reported vulnerability.
  2. Confirm the vulnerability.
  3. Develop a fix or mitigation.
  4. Release a patch or new version of the plugin.
  5. Credit the reporter, if they wish to be acknowledged, in the release notes.

Security Best Practices

To ensure the security of your own use of the "Friend's House" plugin, please:

  • Always use the latest version of the plugin.
  • Regularly check for updates and apply them promptly.
  • Report any suspected vulnerabilities immediately.

Contact

If you have any questions or need further information, please contact me at email.

Disclaimer

While I make every effort to ensure the security of the "Friend's House" plugin, security vulnerabilities are a reality of software development. Users are encouraged to take their own precautions and stay informed about best security practices.

There aren’t any published security advisories