Skip to content

Security: abby-inc/abby-node

SECURITY.md

Security Policy

Supported Versions

We only provide security updates for the latest major version of the Abby Node.js SDK.

Version Supported
1.x

If you are using an older version, we recommend upgrading to the latest version to ensure you have the latest security fixes.

Reporting a Vulnerability

If you discover a potential security vulnerability in this project, please let us know immediately. Do not report security vulnerabilities via public GitHub issues.

Please send an email to contact@abby.fr with details of the vulnerability. We will acknowledge your report and provide a timeline for addressing the issue.

What to include

  • A detailed description of the vulnerability.
  • Steps to reproduce the issue.
  • Any potential impact.
  • Your contact information for follow-up.

Disclosure Process

  1. We receive your report and acknowledge it within 48 hours.
  2. We investigate and validate the vulnerability.
  3. We develop and test a fix.
  4. We release a new version of the SDK with the fix.
  5. We publicly disclose the vulnerability (if appropriate) and credit you for your report.

Thank you for helping us keep Abby secure! 🙏

There aren't any published security advisories