Skip to content

Security: Convertain/laravel-package-template

SECURITY.md

Security Policy

Supported Versions

We release patches for security vulnerabilities for the following versions:

Version Supported
1.x.x

Reporting a Vulnerability

We take security seriously. If you discover a security vulnerability, please follow these steps:

Please Do Not

  • Do not open a public GitHub issue
  • Do not disclose the vulnerability publicly until it has been addressed

Please Do

  1. Email us at [email protected] with details of the vulnerability
  2. Provide a detailed description of the issue, including:
    • Type of vulnerability
    • Steps to reproduce
    • Potential impact
    • Suggested fix (if you have one)
  3. Allow us time to respond and address the issue before public disclosure

What to Expect

  • Acknowledgment: We will acknowledge receipt of your vulnerability report within 48 hours
  • Assessment: We will assess the vulnerability and determine its severity
  • Timeline: We will provide an estimated timeline for a fix
  • Credit: If you wish, we will credit you in our security advisory and changelog

Security Updates

Security updates will be released as patch versions (e.g., 1.0.1) and announced via:

  • GitHub Security Advisories
  • Release notes
  • CHANGELOG.md

Best Practices for Users

To ensure your application remains secure:

  1. Keep the package updated to the latest version
  2. Review our CHANGELOG for security-related updates
  3. Follow Laravel security best practices
  4. Use HTTPS - Always serve your application over HTTPS

Contact

For all security inquiries: [email protected]

Thank you for helping keep our community safe!

There aren’t any published security advisories