Skip to content

Security: transeptorlabs/ccip-smart-account

Security

SECURITY.md

Security Policy

Responsible Disclosure Policy

If you have discovered a security vulnerability in any of the systems provided by Transeptor Labs, we encourage you to report it to us as soon as possible. We are committed to maintaining the security of our systems and appreciate the assistance of the security community.

Reporting Guidelines

We kindly request that you follow these guidelines when reporting security vulnerabilities to us:

  • Please provide a detailed description of the vulnerability, including a clear explanation of the issue and the potential impact.
  • If applicable, a proof of concept (PoC) or steps to reproduce the vulnerability would be greatly appreciated.
  • We'd like to ask that you make a good-faith effort to avoid privacy violations, data destruction, and disruptions to our services during your testing.

Reporting Process

To report a vulnerability, please email [email protected].

Upon receiving your report, we will:

  1. Acknowledge the receipt of your report within 3 business days and provide you with a unique identifier for future reference.
  2. Review and investigate the reported issue promptly.
  3. Keep you informed of our progress and any necessary updates during the investigation and resolution process.

Responsible Disclosure Timeline

We appreciate your cooperation in adhering to the following disclosure timeline:

  • Please provide us with a reasonable amount of time to investigate and address the reported issue before disclosing any information publicly or sharing it with others. We request a minimum of 10 days before making any public disclosure.
  • We commit to providing an initial response to your report within 10 days to confirm that we have received your report and are working on the issue.
  • We aim to release a patched version or mitigation for the reported vulnerability within 30 days of the initial contact. This timeline may vary depending on the complexity of the issue. We will keep you updated on our progress.

Scope

This policy applies to all systems and projects provided by Transeptor Labs. This includes our open-source projects and any related infrastructure.

Contact

For any questions or concerns regarding this security policy, don't hesitate to contact us at [email protected].

Thank you for helping us keep our systems secure.

There aren’t any published security advisories