Skip to content

Security: snowballons/docs-as-code-primer

Security

SECURITY.md

title Security

Security

Reporting a vulnerability

If you discover a security issue in this project, please report it privately.

Do not open a public issue. Contact the maintainers directly:

  1. Open a GitHub Security Advisory
  2. Or email [maintainer email — insert]

We aim to acknowledge reports within 48 hours and release a fix within 7 days of confirmation.

Scope

This project is a documentation structure kit and teaching primer. Security concerns are limited to:

  • Malicious content in template files or example documentation
  • CI workflow injection via PRs from forks
  • Broken link hijacking (link rot exploited by domain squatting)

Out of scope: the security posture of your product's documentation or your team's chosen toolchain.

There aren't any published security advisories