This document outlines our security policy for the Importobot project on GitHub.
Please refer to our main SECURITY.md file for our complete security policy, including:
- How to report vulnerabilities
- Supported versions
- Response expectations
- Security best practices
We use GitHub's built-in security features:
- Dependabot Alerts: Automatic monitoring for vulnerable dependencies
- Code Scanning: Static analysis to detect security issues
- Secret Scanning: Detection of accidentally committed secrets
For security-related issues, please contact:
Please do not use GitHub issues to report security vulnerabilities.