Skip to content

Security: Lay-quq/vibe-coding-launch-security-checklist

Security

SECURITY.md

Security Policy

This repository hosts a static checklist and generated JSON data. It does not run a backend service or collect user data.

Reporting Issues

Please open a GitHub issue for:

  • Incorrect or misleading checklist guidance.
  • Broken static site behavior.
  • Accessibility or browser compatibility problems.
  • Missing launch-risk categories.

If a report contains sensitive details, private product information, credentials, or reproduction steps that should not be public, do not post them in an issue. Contact the maintainer privately through the profile contact method on GitHub, then share only the minimum details needed to verify the problem.

Scope

In scope:

  • The static web app in index.html.
  • The generated checklist data in data/checklist.json.
  • Documentation and prompts in this repository.

Out of scope:

  • Third-party hosting platforms.
  • User projects reviewed with this checklist.
  • Social engineering, spam, or denial-of-service testing.

Safe Reporting

Do not include exploit payloads or instructions that would help attack real systems. Describe the issue, impact, affected file or checklist item, and a safer recommended wording or behavior.

There aren't any published security advisories