Skip to content

Security: Rhishabh01/VigilantLink

Security

SECURITY.md

Security Policy

Supported Versions

We currently provide security updates for the following versions:

Version Supported
2.x .x ✅ Yes
< 2.0 ❌ No

Reporting a Vulnerability

VigilantLink is a security project, and we take vulnerabilities seriously. If you find a security issue, please do not open a public issue.

Responsible Disclosure Process

  1. Email us: Send a detailed report to rhishabh89@gmail.com.
  2. Include details:
    • Description of the vulnerability.
    • Steps to reproduce.
    • Potential impact.
    • Any suggested fix.
  3. Wait for response: We aim to acknowledge your report within 48 hours and provide a fix or mitigation plan within 10 days.
  4. Public disclosure: We ask that you do not disclose the issue publicly until a fix has been released.

Rewards

Currently, VigilantLink is an open-source project and does not have a formal bug bounty program. However, we publicly acknowledge all responsible disclosures.

Security Disclaimers

VigilantLink is a tool to help identify potential phishing threats. It is not a replacement for:

  • Standard security practices.
  • Enterprise-grade endpoint protection.
  • Manual verification of sensitive URLs.

We do our best to provide accurate risk assessments, but 100% detection of all threats is not possible.

There aren't any published security advisories