Skip to content

Security: Pratham-dev05/ProofChain

Security

SECURITY.md

Security Policy

Supported Versions

Security updates and patches are applied to the following versions of ProofChain:

Version Supported
1.0.x
< 1.0

Reporting a Vulnerability

As an industrial evidence and audit platform handling cryptographic integrity, security is critical to ProofChain.

If you discover a security vulnerability or cryptographic weakness, please do NOT report it through public GitHub issues. Instead, follow these steps:

  1. Send an email to prathameshnangare60@outlook.com with:
    • Description of the issue (e.g., hash collision risk, signature bypass, SQL injection, JWT validation flaw)
    • Proof of concept or reproduction script
    • Potential impact assessment
  2. You will receive an acknowledgment within 48 hours.
  3. A fix will be developed, tested, and released along with credit in the security release notes (unless anonymity is requested).

There aren't any published security advisories