Skip to content

Security: damn-am-star/cloudflare-docs

Security

SECURITY.md

Security Policy

This is an independently maintained fork of Cloudflare's documentation repository. Cloudflare does not maintain or manage this fork.

Scope

This policy covers security vulnerabilities specific to this fork, including its documentation, build and dependency configuration, and GitHub Actions workflows. The supported branch is production, the default branch.

Vulnerabilities in Cloudflare products or services are outside this policy. Report them through Cloudflare's vulnerability disclosure program.

Reporting a vulnerability

Private reporting setup for this fork is pending. Do not post vulnerability details, exploit code, or secrets in public issues, pull requests, discussions, or other public channels.

If private vulnerability reporting is enabled for this repository and GitHub displays a Report a vulnerability button, use that private channel. Its availability has not been verified. Until a private reporting channel is available, do not send sensitive vulnerability details through public GitHub features.

When a private channel is available, include the affected file, dependency, workflow, or commit; the potential impact; and steps to reproduce the issue or a proof of concept. Do not include real credentials, tokens, or other secrets.

Please coordinate disclosure privately and allow the maintainer time to investigate and address a report before public disclosure. No response-time commitment is made.

There aren't any published security advisories