We take the security of Telegram Channel Admin seriously. If you discover a security vulnerability, please report it responsibly by following the guidelines below.
Security updates are applied to the active master branch.
| Version | Supported |
|---|---|
| master | ✅ |
| < 1.0 | ❌ |
Please do not report security vulnerabilities through public GitHub issues.
To report a vulnerability:
-
GitHub Security Advisory (Recommended): Navigate to the Security tab of the repository on GitHub and select Report a vulnerability to open a private advisory.
-
Direct contact: If GitHub Private Vulnerability Reporting is unavailable, contact the maintainer directly on Telegram at @ivanchikbyte or via the contact email listed on their GitHub profile.
To help us triage and resolve the issue quickly, please provide as much detail as possible:
- Type of vulnerability (e.g., SQL injection, credential exposure, remote code execution)
- Location of the affected code (file path and line numbers)
- Step-by-step instructions to reproduce the vulnerability, including sample payloads or commands if applicable
- Potential impact and attack scenarios
- Any proposed fixes or mitigations
- Acknowledgment: We will acknowledge receipt of your vulnerability report within 48 hours.
- Assessment: We will confirm the vulnerability, evaluate its severity, and determine the affected components.
- Remediation: We will prepare and test a fix in a private branch or advisory draft.
- Disclosure: Once the fix is published and verified, we will coordinate public disclosure and credit you for the discovery (unless you prefer to remain anonymous).