Skip to content

docs: add a security policy - #33

Merged
kaulith merged 1 commit into
developfrom
docs/security-policy
Sep 5, 2026
Merged

docs: add a security policy#33
kaulith merged 1 commit into
developfrom
docs/security-policy

Conversation

@kaulith

@kaulith kaulith commented Sep 5, 2026

Copy link
Copy Markdown
Collaborator

Adds SECURITY.md now that private vulnerability reporting is enabled on the repository.

Covers supported versions, the private reporting route, response expectations, and scope. Scope is drawn around this client only: credential and token storage, the API client, the local cache, push registration, and the release pipeline. Frappe Framework and Helpdesk, site configuration, and rooted-device attacks are called out as out of scope, along with the sample credential files so their placeholders are not reported as leaks.

@kaulith
kaulith merged commit b48fa0b into develop Sep 5, 2026
4 checks passed
@kaulith
kaulith deleted the docs/security-policy branch September 5, 2026 22:26
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant