Skip to content

Commit a1273f8

Browse files
authored
Create SECURITY.md
1 parent 0d1b065 commit a1273f8

File tree

1 file changed

+51
-0
lines changed

1 file changed

+51
-0
lines changed

SECURITY.md

Lines changed: 51 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,51 @@
1+
# 🔐 Security Policy
2+
3+
## Supported Versions
4+
5+
We actively support the latest **major version** of LaravelLangSyncInertia.
6+
7+
| Version | Supported |
8+
|---------|--------------------|
9+
| 1.x | ✅ Yes |
10+
| 0.x | ❌ No (legacy) |
11+
12+
---
13+
14+
## 📢 Reporting a Vulnerability
15+
16+
If you discover a **security vulnerability**, **please do NOT open an issue or pull request**.
17+
18+
Instead, follow these steps:
19+
20+
1. Email us directly at: [[email protected]](mailto:[email protected])
21+
2. Include:
22+
- Package version
23+
- Laravel version
24+
- Reproduction steps
25+
- Potential impact
26+
27+
We will:
28+
29+
- Acknowledge receipt within 1–2 business days
30+
- Investigate and verify the issue
31+
- Work on a patch and publish a security release
32+
- Credit you (if desired)
33+
34+
---
35+
36+
## 🔒 Best Practices for Users
37+
38+
To help protect your application:
39+
40+
- Always keep this package up to date.
41+
- Use the latest Laravel LTS version when possible.
42+
- Avoid exposing sensitive files in production.
43+
- Sanitize user input when using dynamic language keys (avoid `{user_input}` in keys).
44+
45+
---
46+
47+
## 🙏 Thanks
48+
49+
We appreciate responsible security disclosures to help protect the Laravel community. ❤️
50+
51+
```

0 commit comments

Comments
 (0)