AnswerDotAI / AnswerDotAI/fastcore
Security contact needed — no SECURITY.md or private reporting channel
- Dominant language
- Jupyter Notebook
- Stars
- 1.1k
- Forks
- 295
- Avg merge
- 1d 6h
- Merged PRs (30d)
- 7
Description
Hi maintainers, I'd like to report a security issue in fastcore privately rather than in a public issue, but this repo has no SECURITY.md and GitHub Private Vulnerability Reporting (/security/advisories/new) is not enabled. Could you enable Private Vulnerability Reporting (Settings → Security), add a SECURITY.md, or point me to a private security contact? I'll send full details there. Thanks!
— Mohammad Adnan (CyStack red team), GitHub @mohammedix88
Contributor guide
Research direction
Start by checking whether the repository root contains SECURITY.md, then review GitHub Settings → Security for Private Vulnerability Reporting. Done means a private reporting channel is available and the repository provides a SECURITY.md or private security contact explaining how to report vulnerabilities.
Written by the indexing model from the issue text.
Assessment
- Tech stack
- github
- Domain
- documentation, security
- Issue type
- Feature
- Difficulty
- 2/5
- Estimated time
- 1-3 hours
- Activity status
- Active
- Clarity
- Mostly clear
- Newbie friendliness
- 75/100