Skip to content

Security: lksnext/cloud-platform-core

SECURITY.md

Security Policy

Supported Versions

The following versions of Cloud Platform Core currently receive security updates:

Version Supported
0.1.x ✅ Yes

Older versions are not supported. Please upgrade to the latest release.


Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

To report a security vulnerability, contact the security team privately at:

security@lksnext.com

Please include the following in your report:

  • A clear description of the vulnerability
  • Steps to reproduce the issue
  • Affected versions
  • Any potential impact or attack scenario
  • Suggested fix (if available)

Response Process

  1. You will receive an acknowledgement within 72 hours
  2. The team will investigate and assess the severity
  3. A fix will be developed and reviewed privately
  4. A patched release will be published
  5. The vulnerability will be disclosed publicly after users have had time to update

We appreciate responsible disclosure and will credit researchers in the release notes unless anonymity is requested.


Scope

This policy covers the packages in this repository:

  • @lksnext/aws-cdk
  • @lksnext/azure-terraform

It does not cover third-party dependencies. Please report those to their respective maintainers.


Attribution

Thank you for helping keep Cloud Platform Core and its users safe.

There aren't any published security advisories