Skip to content

Security: samithahansaka/formless

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.x.x ✅ Yes

Reporting a Vulnerability

Found a security issue? We take it seriously.

Please DO NOT open a public issue.

Instead:

  1. Email the details to samithahansaka (via GitHub profile)
  2. Or open a private security advisory

What to Include

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

What to Expect

  • Response: Within 48 hours
  • Update: We'll keep you informed of progress
  • Credit: We'll acknowledge your contribution (unless you prefer anonymity)

Scope

This library is a client-side React form abstraction layer. The attack surface is minimal, but we still appreciate reports about:

  • XSS vulnerabilities
  • Form data exposure
  • Validation bypass issues
  • Any unexpected behavior that could be exploited

Thank you for helping keep Formless safe!

There aren’t any published security advisories