Skip to content

Security: Rayos-Org/web-dashboard

Security

docs/SECURITY.md

Security Policy

Supported Versions

Version Supported
main branch ✅ Active
Older branches ❌

Reporting a Vulnerability

Please do not open a public GitHub issue for security vulnerabilities.

If you discover a security vulnerability in this project — including issues affecting the WebAuthn passkey flow, session JWT, or smart-contract interactions — please report it privately:

  1. GitHub Security Advisories (preferred): Navigate to the Security tab → Report a vulnerability on this repository.
  2. Email fallback: Send details to the maintainers via the org contact in the GitHub profile.

What to include

  • A description of the vulnerability and its impact
  • Steps to reproduce (as detailed as possible)
  • Any proof-of-concept or exploit code
  • Your suggested fix if you have one

Response timeline

Milestone Target
Acknowledgement Within 48 hours
Assessment & severity rating Within 5 business days
Fix & coordinated disclosure Within 30 days (severity-dependent)

We take security seriously. Thank you for helping keep Guardian Wallet safe.

There aren't any published security advisories