Skip to content

Security: secureframe/secureframe-mcp-server

Security

SECURITY.md

Security Policy

Reporting Security Vulnerabilities

We take the security of this project seriously. If you discover a security vulnerability, please report it responsibly.

How to Report

Please DO NOT file a public issue for security vulnerabilities.

Instead, please send an email to [email protected] with:

  1. A description of the vulnerability
  2. Steps to reproduce the issue
  3. Potential impact
  4. Any suggested fixes (optional)

Response Timeline

We will acknowledge receipt of your vulnerability report within 48 hours and will send a more detailed response within 7 days indicating the next steps in handling your report.

Disclosure Policy

We request that you:

  • Give us reasonable time to address the issue before public disclosure
  • Make a good faith effort to avoid privacy violations, data destruction, and interruption or degradation of services
  • Not access or modify data that does not belong to you

Thank you for helping keep this project and its users safe!

There aren’t any published security advisories