Vulnerability Disclosure Policy

At https://joshuajewell.dev, we take the security of our systems and data very seriously. We believe that responsible disclosure of security vulnerabilities is essential to maintaining the trust of our users and the security of our systems.

Reporting a Vulnerability

If you believe you have discovered a security vulnerability in our systems or applications, we encourage you to report it to us. We will investigate all reports and take appropriate action to address the vulnerability.

To report a vulnerability, please submit a report to security@joshuajewell.dev. Please include as much detail as possible about the vulnerability, including:

  • A clear description of the vulnerability
  • Steps to reproduce the vulnerability
  • Any relevant technical details, such as versions of software or hardware

Responsible Disclosure

We believe in responsible disclosure of security vulnerabilities. This means that we will work with you to verify the vulnerability and develop a plan to address it before making any public disclosure. We will also provide you with regular updates on the status of the vulnerability and any actions we are taking to address it.

Publishing

We will publish information about the vulnerability and the actions we are taking to address it on our website. We will also provide credit to the reporter for discovering the vulnerability, if they wish to be acknowledged.

Bug Bounty Program

We do not currently have a bug bounty program in place. However, we appreciate the efforts of security researchers who help us identify and address security vulnerabilities.

Contact Information

If you have any questions or concerns about our vulnerability disclosure policy, please don’t hesitate to contact us at security@joshuajewell.dev.

Policy Updates

This policy may be updated from time to time. We will post any updates on this page.

Thank you for helping us keep our systems and applications secure!