Skip to content

Security: zai-org/feedback

SECURITY.md

安全反馈 · Security Policy

报告安全漏洞 · Reporting a Vulnerability

⚠️ 请勿通过公开 Issue 提交安全漏洞。请使用以下私密渠道。 Do NOT report security vulnerabilities via public issues. Use the private channels below.

优先方式 · Preferred

通过 GitHub 的 Private Vulnerability Reporting 提交: Report via GitHub's Private Vulnerability Reporting:

Report a vulnerability

兜底方式 · Fallback

发邮件至 / Email: cyunying090@gmail.com 邮件标题请以 [ZCode Security] 开头。/ Prefix the subject with [ZCode Security].


我们承诺 · Our Commitments

  • 3 个工作日内确认收到 / Acknowledge within 3 business days
  • 14 天内给出初步评估(严重度、修复计划) / Initial assessment within 14 days
  • 漏洞修复并发布后,致谢报告者(除非你希望匿名) / Credit reporters after public fix (unless anonymity requested)

请在报告中包含 · Please Include

  • 漏洞类型 / Vulnerability type
  • 受影响版本 / Affected versions
  • 复现步骤 / Steps to reproduce
  • 潜在影响 / Potential impact
  • 概念验证(若有) / Proof of concept (if available)

感谢你帮助保护 ZCode 用户的安全。 Thank you for helping keep ZCode users safe.

There aren't any published security advisories