monad-crypto / monad-crypto/protocols

Request: enable private vulnerability reporting

Open Beginner friendly
#375 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Python
Stars
93
Forks
258
Avg merge
10h 17m
Merged PRs (30d)
19

Description

Hi — I've done an unsolicited review of this repo's CI configuration and have a small set of findings I'd like to
share privately rather than in a public issue, since some of them are exploitable as-is.

Could you either:

  • Enable GitHub's private vulnerability reporting for this repo (Settings → Code security and analysis → Private vulnerability reporting → Enable), or
  • Share a security contact (email / Signal / etc.) I can send the writeup to?

Contributor guide

No contributing guide indexed for this repository

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Open the repository Settings and navigate to Code security and analysis → Private vulnerability reporting. Verify whether the feature can be enabled, or identify a security contact that can be published in the issue or repository documentation. Done means a private reporting route is available to the reporter.

Written by the indexing model from the issue text.

Assessment

Tech stack
github
Domain
security
Issue type
Feature
Difficulty
1/5
Estimated time
Under an hour
Activity status
Quiet
Clarity
Clearly specified
Newbie friendliness
68/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.