Skip to content

Security: prudhvi1519/Project-N

Security

SECURITY.md

Security Policy

Supported Versions

The following versions of NirveonX's Project-N are currently supported with security updates:

Version Supported
1.x.x
0.5.x
< 0.5.0

Reporting a Vulnerability

We take the security of NirveonX's code and the safety of our users' data, especially health-related information, very seriously. If you believe you've found a security vulnerability, please follow these steps:

  1. Email: Send details to support@nirveonx.com with a description of the issue, potential impact, and steps to reproduce.
  2. Disclosure: Please provide us reasonable time to investigate and address the vulnerability before any public disclosure.
  3. Response Time: You can expect an initial response within 48 hours acknowledging receipt of your report.

What to Expect

  • Updates: We will provide updates on the progress of fixing the vulnerability at least once a week.
  • Resolution: When the vulnerability is fixed, we will notify you and may invite you to confirm the fix.
  • Credit: We're happy to credit researchers who responsibly disclose vulnerabilities, if desired.
  • Rewards: We may offer rewards for critical vulnerabilities, depending on severity and impact.

If a Vulnerability is Accepted

  1. We will acknowledge the vulnerability and assign it internal tracking.
  2. Our security team will work on a fix with high priority.
  3. Patches will be applied to all supported versions as quickly as possible.
  4. A security advisory will be published after the fix has been deployed.

Our Commitment to Data Security

NirveonX is committed to maintaining military-grade data protection for all health information processed by our applications. We employ:

  • End-to-end encryption for all sensitive data
  • Regular security audits
  • Compliance with healthcare data protection standards

Security Updates

Security updates are released as part of our regular update cycle or as emergency patches for critical vulnerabilities. We strongly encourage all users to keep their installations updated to the latest supported version.

Additional Resources

There aren't any published security advisories