Skip to content

Security: Auxillo-Tech/.github

Security

SECURITY.md

🌐 English · Deutsch · 简体中文 · Italiano · Español · Français · 日本語 · Português · Русский


Security Policy

Auxillo takes security seriously.

If you believe you have found a vulnerability in an Auxillo system or product, please report it through the contact path below.

Reporting

Please include:

  • Affected system, repository, or URL
  • Vulnerability summary and type
  • Steps to reproduce
  • Potential impact
  • Supporting evidence (logs, screenshots, request/response examples)

Scope

Only systems and repositories owned and operated by Auxillo are in scope. Third-party dependencies are outside scope.

The following are prohibited:

  • Destructive or denial-of-service testing
  • Credential attacks, password guessing, or brute force
  • Social engineering of any kind
  • Physical attacks or facility access attempts
  • Testing against third-party systems or services

Response

Valid reports are reviewed, prioritized, and acknowledged. Severity is assessed based on exploitability, reachability, affected assets, existing controls, and business impact.

There aren't any published security advisories