Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Trying to get in touch regarding a security issue #296

Open
JamieSlome opened this issue Sep 14, 2021 · 8 comments
Open

Trying to get in touch regarding a security issue #296

JamieSlome opened this issue Sep 14, 2021 · 8 comments

Comments

@JamieSlome
Copy link

Hey there!

I'd like to report a security issue but cannot find contact instructions on your repository.

If not a hassle, might you kindly add a SECURITY.md file with an email, or another contact method? GitHub recommends this best practice to ensure security issues are responsibly disclosed, and it would serve as a simple instruction for security researchers in the future.

Thank you for your consideration, and I look forward to hearing from you!

(cc @huntr-helper)

@StanByes
Copy link
Contributor

Hello @JamieSlome you can join our Discord and explain the issue to one "Support" or "Modérateur" or in the channel "support" ;)

@crowwd
Copy link

crowwd commented Dec 2, 2021

whats the security problem

@StanByes
Copy link
Contributor

StanByes commented Dec 6, 2021

We have a simple problem, all reports that you sended are in private mode.
Can you turn they on public mode ?

@JamieSlome
Copy link
Author

@StanByes - you can view the reports by logging in with your GitHub account, otherwise, we can continue to make all of the reports public, if that is suitable for you and the other maintainers?

@StanByes
Copy link
Contributor

I just try and I didn't access to the reports

@JamieSlome
Copy link
Author

@StanByes - if you could let us know of an e-mail in your SECURITY.md that we can send a magic link to, then you will be able to view the report without logging in.

@nivcoo
Copy link
Member

nivcoo commented Jan 16, 2022

@StanByes - if you could let us know of an e-mail in your SECURITY.md that we can send a magic link to, then you will be able to view the report without logging in.

Hello, i've fixed 3 issues out of 4, and i've leave message into the last report, i've discuss with Labda to know how works huntr website also, for security.md i can add that but actually you can discuss with me.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Development

No branches or pull requests

4 participants