Skip to content

Security: Subham503/AttendAI

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
latest (main)

Reporting a Vulnerability

Do NOT report security vulnerabilities as public GitHub Issues.

AttendAI handles student face data and attendance records. Security issues must be reported privately.

Email: sahusubham38632@gmail.com
Subject: [SECURITY] AttendAI - <brief description>

What to include:

  • Description of the vulnerability
  • Steps to reproduce
  • Affected file(s) and line numbers
  • Proposed fix (optional)

I will respond within 48 hours and credit you in the fix.

Scope

  • Authentication bypass
  • Path traversal / file write
  • Role-based access violations
  • Data exposure via API

There aren't any published security advisories