Skip to content

Security: verifiablelabs/.github

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

Please report security vulnerabilities to security@verifiable-labs.com.

Do not file public GitHub issues for security-sensitive reports.

We will acknowledge receipt within 72 hours and aim to provide a status update within 7 days. Coordinated disclosure timelines are agreed case-by-case.

Scope

This policy covers the public Verifiable Labs repositories under the verifiablelabs organisation, including:

Out of scope

  • Findings against third-party dependencies — please report upstream
  • Social-engineering reports against the maintainer
  • DoS / rate-limit findings on the unauthenticated public API (already rate-limited at 30 req/min/IP — see SDK README)

There aren't any published security advisories