Skip to content

Security: ululab/strapi-keys

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability within Strapi-Keys, please follow these steps to report it:

  1. Do not create a public GitHub issue. Security vulnerabilities should be reported privately.
  2. Email us at webmaster@ululab.it with a detailed description of the vulnerability. Please include steps to reproduce, potential impact, and any mitigations you've identified.
  3. Allow some time for the team to assess and address the vulnerability. We will keep you informed of our progress.

Responsible Disclosure

We encourage responsible disclosure of security vulnerabilities. If you follow the steps outlined above, we will make every effort to acknowledge your contribution and address the issue promptly.

Security Measures

Strapi-Keys leverages the cryptographic functionalities provided by Node.js's built-in crypto module for secure key generation and management. We follow industry best practices for cryptographic operations to ensure the integrity and confidentiality of sensitive data.

For more details on the crypto module, you can refer to the official Node.js documentation: Node.js Crypto Module.

Thank you for helping to keep Strapi-Keys secure!

There aren't any published security advisories