Skip to content

Security: Ayushh-Sharmaa/GSF

Security

SECURITY.md

Security Policy

πŸ›‘οΈ Reporting a Vulnerability

If you discover a security vulnerability in GSF, please report it responsibly.

πŸ“§ Email: hello@gsf.community Subject: [SECURITY] Vulnerability Report

Please include:

  • Description of the issue
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

We aim to respond within 48 hours.


πŸ” Supported Versions

Currently supported versions:

Version Supported
Latest βœ… Yes
Older versions ❌ No

🚫 Do NOT

  • Open public GitHub issues for security vulnerabilities
  • Share exploits publicly before resolution

🧠 Security Practices

We follow:

  • Secure authentication flows
  • Input validation and sanitization
  • Environment variable protection
  • HTTPS-only deployment (via Vercel)
  • Dependency monitoring

πŸ” Scope

This includes:

  • Authentication system
  • API endpoints
  • Payment & equity transaction flows
  • User data handling

πŸ† Responsible Disclosure

We appreciate ethical hackers and researchers helping improve GSF.

Valid reports may be acknowledged publicly (with your consent).


βš–οΈ Legal

By reporting vulnerabilities, you agree:

  • Not to exploit the issue
  • Not to access user data beyond necessity
  • To act in good faith

GSF is committed to building a secure platform for founders worldwide.

There aren't any published security advisories