Skip to content

Security: Rushik-B/Clira

Security

SECURITY.md

Security Policy

Reporting A Vulnerability

Please report security issues privately using GitHub Security Advisories for this repository.

  • Do not open public GitHub issues for vulnerabilities.
  • Include reproduction steps, impact, and affected components.

Scope

Security-sensitive areas include:

  • OAuth token handling and encryption
  • Email content encryption and key management
  • Webhook signature validation
  • Auth-protected cron and admin-style endpoints

For implementation details and deployment hardening guidance, see docs/security.md.

There aren’t any published security advisories