- OpenAPI: add missing endpoints (add-from-url, subscriptions, public availability) - OpenAPI: CalendarSubscription schema, Subscriptions tag - Frontend app - Migrations: count_for_availability, subscriptions_sync, user_preferences, calendar_settings - Config, rate limit, auth, calendar, booking, ICS, availability, user service updates Made-with: Cursor
13 lines
643 B
Markdown
13 lines
643 B
Markdown
# Security Policy
|
|
|
|
## Supported Versions
|
|
|
|
Security updates are applied only to the latest release.
|
|
|
|
## Reporting a Vulnerability
|
|
|
|
If you have discovered a security vulnerability in this project, please report it privately. **Do not disclose it as a public issue.**
|
|
This gives us time to work with you to fix the issue before public exposure, reducing the chance that the exploit will be used before a patch is released.
|
|
Please disclose it to [Sasha Koss](mailto:koss@nocorp.me). This project is maintained by a team of volunteers
|
|
on a reasonable-effort basis. As such, please give us at least 90 days to work on a fix before public exposure.
|