Skip to content

Security: reefsupport/marine-data

SECURITY.md

Security policy

Supported versions

Version Supported
1.0.x Yes
Earlier No

Reporting a vulnerability

Report privately. Do not open a public issue for a vulnerability.

Include the affected version or commit, what you observed, and steps to reproduce it. Reef Support acknowledges reports within a few working days and keeps the reporter informed until the issue is resolved.

What counts as a security report

  • A flaw in the marinedata package or its tooling.
  • Credentials, tokens or keys found in the repository or in the published data.
  • Personal data found in the repository or in the published data, such as a recognisable face, a name or an e-mail address in an image, label or metadata field.

Licence or attribution problems with a source are data issues, not security reports. Use the data issue form instead.

There aren't any published security advisories