Files
CyberChef/SECURITY.md
T

19 lines
1.1 KiB
Markdown
Raw Normal View History

2019-08-22 17:38:56 +01:00
# Security Policy
2026-06-17 11:31:55 +01:00
## Support
2019-08-22 17:38:56 +01:00
2026-06-11 11:36:01 +01:00
CyberChef is supported on a best endeavours basis.
Patches will be applied to the latest version rather than retroactively to older versions.
To ensure you are using the most secure version of CyberChef, please make sure you have the [latest release](https://github.com/gchq/CyberChef/releases/latest). [The official website](https://gchq.github.io/CyberChef/) is always up to date.
2019-08-22 17:38:56 +01:00
2026-06-17 11:31:55 +01:00
No guarantee is offered for the correctness or security of CyberChef. In paticular, the security of cryptographic operations should not be relied upon.
2019-08-22 17:38:56 +01:00
## Reporting a Vulnerability
2026-06-11 11:36:01 +01:00
If you discover a vulnerability in CyberChef, please do not publicly disclose it, and do not create a GitHub issue.
2019-08-22 17:38:56 +01:00
2026-06-11 11:36:01 +01:00
Instead, send an email as soon as possible to [CyberChefSecurity@gchq.gov.uk](mailto:CyberChefSecurity@gchq.gov.uk).
The report will be acknowledged and actioned urgently by the CyberChef maintainers.
If you do not receive a timely acknowledgement, please notify [oss@gchq.gov.uk](mailto:oss@gchq.gov.uk) and [CyberChef@gchq.gov.uk](mailto:CyberChef@gchq.gov.uk) of your vulnerability report.