Skip to content

Security: MutinyWallet/mutinynet-faucet

Security

SECURITY.md

Security Policy

Supported Versions

MutinyNet Faucet is currently maintained on its default branch. Security fixes are applied there and may not be backported to older commits, forks, or deployments.

Reporting a Vulnerability

Please do not report suspected security vulnerabilities in a public GitHub issue, discussion, or pull request.

Instead, email benthecarman@live.com with the subject Security: mutinynet-faucet. Include, where possible:

  • A description of the vulnerability and its potential impact
  • The affected component, endpoint, commit, or deployment
  • Steps to reproduce or a minimal proof of concept
  • Any suggested mitigation
  • A safe way to contact you for follow-up

Do not include secrets, credentials, personal data, or destructive test results in the initial report. We will acknowledge the report as soon as reasonably possible, investigate it, and coordinate remediation and disclosure with you. Please allow us a reasonable opportunity to address the issue before publishing details.

Scope

Reports concerning the code in this repository are in scope. Vulnerabilities in third-party services or dependencies should also be reported to their maintainers when appropriate, but we welcome notice when they directly affect this project.

Please avoid testing that disrupts the public faucet, degrades service for others, accesses data that is not your own, or targets infrastructure outside your control.

There aren't any published security advisories