agate

Simple gemini server for static files
git clone https://github.com/mbrubeck/agate.git
Log | Files | Refs | README

SECURITY.md (1258B)


      1 # Security Policy
      2 
      3 ## Supported Versions
      4 
      5 Only the latest version of Agate is supported at any time.
      6 
      7 ## Reporting a Vulnerability
      8 
      9 Please report issues that you deem to be a security issue by email to johann at qwertqwefsday.eu.
     10 
     11 You may use OpenPGP encryption with the public key available at either
     12 - <https://github.com/Johann150/Johann150/blob/main/johann-qwertqwefsday-eu.asc>
     13 - through web key discovery, e.g. `gpg --locate-keys ...`
     14 - or the above manually at <https://qwertqwefsday.eu/.well-known/openpgpkey/hu/spd3xecxhotzgyu1p3eqdqdp31ba6rif>
     15 
     16 All these public keys should be identical. If you wish for an encrypted response, include instructions on how to obtain your public key in the email.
     17 
     18 Please allow at least 24 hours for a response.
     19 If your issue is easy to fix, you might not get a response until the issue is fixed.
     20 Otherwise, the receipt of your report should be acknowledged.
     21 
     22 If you did not receive a reply within the above time frame, please email another maintainer listed in the `Cargo.toml` file, citing that you did not yet receive a reply.
     23 Only limited support may be available.
     24 
     25 ## Compensation
     26 
     27 There is no bug bounty or other rewards program.
     28 At your option, you may be mentioned by your name or pseudonym in the changelog.