Security updates and patches are applied to the following versions of ProofChain:
| Version | Supported |
|---|---|
| 1.0.x | ✅ |
| < 1.0 | ❌ |
As an industrial evidence and audit platform handling cryptographic integrity, security is critical to ProofChain.
If you discover a security vulnerability or cryptographic weakness, please do NOT report it through public GitHub issues. Instead, follow these steps:
- Send an email to
prathameshnangare60@outlook.comwith:- Description of the issue (e.g., hash collision risk, signature bypass, SQL injection, JWT validation flaw)
- Proof of concept or reproduction script
- Potential impact assessment
- You will receive an acknowledgment within 48 hours.
- A fix will be developed, tested, and released along with credit in the security release notes (unless anonymity is requested).