Skip to content

Security: Cognitive-Network-Solutions/smartran-studio

Security

SECURITY.md

Security Policy

Supported Versions

SmartRAN Studio is under active development. During the early stages of the project (0.x releases), only the latest release will receive security updates.

Version Supported
0.x ✔ Active support
< 0.x ✖ Not supported

Reporting a Vulnerability

Please do not open public GitHub issues for security vulnerabilities.

If you discover a security issue in SmartRAN Studio (including the backend, frontend, simulation engine, database interactions, or deployment environment), please report it privately to:

📧 Michael.Chiaramonte@cnscellular.com

What to include

When reporting a vulnerability, please provide:

  • A detailed description of the issue
  • Steps to reproduce (if applicable)
  • Potential impact and affected components
  • Your environment details (OS, browser, backend version, etc.)
  • Suggested mitigation or fixes (optional)

Response expectations

  • You will receive an initial acknowledgment within 72 hours.
  • You will receive status updates every 7 days while the issue is being investigated.
  • Confirmed vulnerabilities will be addressed promptly.

Coordinated disclosure

We follow responsible disclosure practices.
Security issues will not be made public until:

  • A fix or patch is available, or
  • A mitigation strategy has been communicated

Researchers will be credited (with their permission) in the release notes after the fix is published.

There aren’t any published security advisories