Skip to content

Security: qrstuff/codex-plugins

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

The QRStuff team takes the security of our software and services seriously. If you believe you have found a security vulnerability in this repository or any related QRStuff services, please report it to us responsibly.

How to Report

  • Email: Please email security reports to security@qrstuff.com.
  • Please include a detailed description of the issue, steps to reproduce, and any relevant proof-of-concept code or configurations.
  • Please do not open public GitHub issues or pull requests for security vulnerabilities.

Response Timeline

  • Acknowledgment: We aim to acknowledge vulnerability reports within 2 business days.
  • Assessment & Fix: We will investigate and release a fix or remediation as quickly as possible.
  • Disclosure: We will coordinate with you regarding public disclosure once a patch is verified and deployed.

Thank you for helping keep QRStuff and our users safe.

There aren't any published security advisories