Skip to content

Security: ivanchik-byte/Telegram-Channel-Admin

.github/SECURITY.md

Security Policy

We take the security of Telegram Channel Admin seriously. If you discover a security vulnerability, please report it responsibly by following the guidelines below.


Supported versions

Security updates are applied to the active master branch.

Version Supported
master ✅
< 1.0 ❌

Reporting a vulnerability

Please do not report security vulnerabilities through public GitHub issues.

To report a vulnerability:

  1. GitHub Security Advisory (Recommended): Navigate to the Security tab of the repository on GitHub and select Report a vulnerability to open a private advisory.

  2. Direct contact: If GitHub Private Vulnerability Reporting is unavailable, contact the maintainer directly on Telegram at @ivanchikbyte or via the contact email listed on their GitHub profile.

What to include in your report

To help us triage and resolve the issue quickly, please provide as much detail as possible:

  • Type of vulnerability (e.g., SQL injection, credential exposure, remote code execution)
  • Location of the affected code (file path and line numbers)
  • Step-by-step instructions to reproduce the vulnerability, including sample payloads or commands if applicable
  • Potential impact and attack scenarios
  • Any proposed fixes or mitigations

Response timeline and process

  1. Acknowledgment: We will acknowledge receipt of your vulnerability report within 48 hours.
  2. Assessment: We will confirm the vulnerability, evaluate its severity, and determine the affected components.
  3. Remediation: We will prepare and test a fix in a private branch or advisory draft.
  4. Disclosure: Once the fix is published and verified, we will coordinate public disclosure and credit you for the discovery (unless you prefer to remain anonymous).

There aren't any published security advisories