Skip to content

Security: Decentral-America/ride-js

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
2.3.0 (current)
< 2.0.0

Reporting a Vulnerability

Do NOT open a public GitHub issue.

Email info@decentralchain.io with:

  1. Description of the vulnerability
  2. Steps to reproduce
  3. Potential impact assessment
  4. Suggested fix (optional)

Response Timeline

  • Acknowledgement: 48 hours
  • Assessment: 5 business days
  • Critical patch: 14 days
  • Lower severity: 30 days

Best Practices

  • Use the latest supported version
  • Pin dependencies with lockfiles
  • Run npm audit regularly
  • Never expose seed phrases or private keys in logs

There aren’t any published security advisories