Skip to content

Security: Root18/Nestify

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
Latest

Reporting a Vulnerability

If you discover a security vulnerability in Nestify, please report it responsibly.

Do not open a public GitHub issue for security vulnerabilities.

Instead, please contact the maintainer directly through their GitHub profile to report the issue privately.

What to Include

  • A description of the vulnerability and its potential impact.
  • Steps to reproduce the issue.
  • Any relevant logs, screenshots, or proof-of-concept code.

What to Expect

  • Acknowledgment: You will receive an acknowledgment within 48 hours.
  • Updates: You will be kept informed of the progress toward a fix.
  • Resolution: Once the vulnerability is confirmed, a fix will be developed, tested, and released as soon as possible.
  • Credit: Contributors who report valid vulnerabilities will be credited in the release notes (unless they prefer to remain anonymous).

General Security Practices

  • Nestify runs within the Visual Studio process and interacts only with the Solution Explorer project hierarchy.
  • The extension does not transmit data over the network, access external services, or store sensitive information.

There aren't any published security advisories