Skip to content

Security: ValeraFinebits/btcpayserver-payjoin-plugin

SECURITY.md

Security Policy

Supported Versions

Version Supported
Latest
Older

Only the latest release receives security fixes. Please update to the latest version before reporting a vulnerability.

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

Use GitHub's private vulnerability reporting to disclose security issues confidentially:

👉 Report a vulnerability

Include as much detail as possible:

  • Description of the vulnerability and its potential impact
  • Steps to reproduce or proof-of-concept
  • Affected versions

Response Process

After you submit a report:

  1. You will receive an acknowledgment within 72 hours.
  2. We will investigate and keep you informed of the progress.
  3. Once a fix is ready, we will coordinate a disclosure timeline with you.
  4. A public security advisory will be published after the fix is released.

We appreciate responsible disclosure and thank you for helping keep this project secure.

There aren't any published security advisories