Skip to content

Security: xvyimu/TransitHub

Security

.github/SECURITY.md

Security Policy · TransitHub

This repository is xvyimu/TransitHub, an independently maintained AGPL-3.0 derivative of QuantumNous new-api.

Supported Versions

Version Supported
Latest tip on this repository
Older / upstream-only tags Best-effort; prefer latest TransitHub tip

Reporting a Vulnerability

Do NOT report security vulnerabilities in public GitHub Issues.

Preferred for this fork / TransitHub:

  1. GitHub Security Advisories on this repo:
    https://github.com/xvyimu/TransitHub/security/advisories/new
  2. Or open a private channel the maintainer documents (do not paste secrets in public issues).

If the issue is clearly present in upstream QuantumNous new-api as well, you may also report there so both lines can fix:

What to Include

  • Description of the vulnerability and impact
  • Steps to reproduce (PoC)
  • Affected version / commit of TransitHub (git rev-parse HEAD)
  • Any suggested fix

Please allow reasonable time for a fix before public disclosure.

There aren't any published security advisories