This document outlines security procedures and general policies for the Intergalactic project as found on https://github.com/semrush/intergalactic.
Thank you for improving the security of our open source products. Semrush Security team takes all vulnerabilities seriously.
Report security vulnerabilities by following the security section on the Semrush website
https://www.semrush.com/company/security/
Please note that all submitted vulnerabilities will be processed in accordance with the policy that can be found at the link above.
When Security team will receive a security bug report, they will assign it to a primary handler. This person will coordinate the fix and release process, involving the following steps:
- Confirm the problem and determine the affected versions.
- Prepare fixes for all releases still under maintenance.