aboutsummaryrefslogtreecommitdiff
diff options
context:
space:
mode:
authorPandaNinjas <admin@malwarefight.gq>2023-02-10 11:59:30 -0800
committerPandaNinjas <admin@malwarefight.gq>2023-02-10 11:59:30 -0800
commit45e050e70fd22734be71ddf5e16b012b48a93cde (patch)
tree415a11d0038d5c423f5ec1fce01a81950f9fb208
parentffed53e2c70cba8b6abf01e6cdc987721fc66e99 (diff)
parent55bd37f26b8d9f99b2296636048bffc63880f95d (diff)
downloadNoSession-45e050e70fd22734be71ddf5e16b012b48a93cde.tar.gz
NoSession-45e050e70fd22734be71ddf5e16b012b48a93cde.tar.bz2
NoSession-45e050e70fd22734be71ddf5e16b012b48a93cde.zip
Merge remote-tracking branch 'origin/main-pandaninjas-nightly' into main-pandaninjas-nightly
-rw-r--r--SECURITY.md9
1 files changed, 5 insertions, 4 deletions
diff --git a/SECURITY.md b/SECURITY.md
index 4a30fd7..54de5da 100644
--- a/SECURITY.md
+++ b/SECURITY.md
@@ -2,11 +2,12 @@
## Supported Versions
-Currently, all releaswed versions are supported.
+Generally, the latest release will be supported. Nightly branches are never supported unless the author supports it
| Version | Supported |
|--------------------|-----------|
-| 1.0.0 | ✔️ |
+| 1.0.0 | ❌ |
+| 1.1.0 | ✔️ |
| Any nightly branch | ❌ |
## Reporting a Vulnerability
@@ -15,8 +16,8 @@ Vulnerabilities that are out of scope are defined as those that NoSession itself
However, if you can produce a patch for an out-of-scope vulnerability, a bug bounty will be awarded as well.
-The bug bounty is a $5 USD Amazon Gift Card. I might run out, so it's awarded on a first come, first served basis.
+The bug bounty is a $5 USD Amazon Gift Card. I might run out, so it's awarded on a first come, first serve basis.
Report the bug bounty by sending a DM to PandaNinjas#3017 on Discord.<br>
If you would like, you can encrypt the message with my [public GPG key](https://raw.githubusercontent.com/pandaninjas/pandaninjas/main/pandaninjas-publickey.key)<br>
-Your bug bounty may be invalidated if you disclose it to the public before.
+Your bug bounty may be invalidated if you disclose it to the public before. You must be the first to report a vulnerability