Skip to content

Security: minefleet/minecraft-gateway

SECURITY.md

Security Policy

Supported Versions

Minefleet is currently in early development. Security fixes are applied to the latest release only.

Version Supported
latest yes
older no

Reporting a Vulnerability

Please do not report security vulnerabilities through public GitHub issues.

Instead, report them privately via GitHub's security advisory feature: go to the relevant repository, click Security → Report a vulnerability. Alternatively you can reach us on Discord by sending a direct message to a maintainer.

When reporting, include as much detail as possible:

  • A description of the vulnerability and its potential impact
  • Steps to reproduce or a proof of concept
  • The component and version affected
  • Any suggested mitigations if you have them

You can expect an initial response within 72 hours. We will keep you informed as we investigate and work toward a fix. If the vulnerability is confirmed, we will coordinate a disclosure timeline with you before publishing anything publicly.

We appreciate responsible disclosure and will credit reporters in the release notes unless you prefer to remain anonymous.

There aren't any published security advisories