Skip to content

Security: jackdu2333/Electronic-Photo-Album-OpenSource-

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
3.x Yes
< 3.0 No

Reporting a Vulnerability

Please report security issues by opening a private security advisory on GitHub:

https://github.com/jackdu2333/Electronic-Photo-Album-OpenSource-/security/advisories/new

Do not publicly disclose vulnerabilities involving authentication bypass, file access, path traversal, or private photo exposure before a fix is available.

What to Include

  • A description of the vulnerability and its potential impact
  • Steps to reproduce or proof-of-concept (if possible)
  • Any suggested fix or mitigation

Response Timeline

We aim to acknowledge reports within 48 hours and provide a fix within 7 days for critical issues.

There aren't any published security advisories