Files
EasyTier/.github/SECURITY.zh-CN.md
KKRainbow 86d942ec8c docs: add security reporting policy (#2561)
* docs(security): add private reporting policy

Document supported versions and route vulnerability reports through GitHub's private advisory workflow.

Add English and Chinese responsible-use notices to the READMEs.

Closes #2544

* ci: skip unrelated pull request builds

Use pull-request-aware path filtering for required Core, GUI, Mobile, and Test workflows so they still publish required check contexts without launching expensive jobs for documentation changes.

Limit the optional OHOS pull request workflow to relevant paths.
2026-09-10 12:30:49 +08:00

1.1 KiB

安全策略

简体中文 | English

支持的版本

EasyTier 仅为最新正式版本提供安全更新。报告漏洞前,请尽可能在最新正式版本或当前 main 分支上确认问题仍然存在。

版本 是否支持
最新正式版本 是
更早版本 否

报告安全漏洞

请通过 GitHub 的私有漏洞报告表单报告疑似安全漏洞。

请勿在公开 Issue、Discussion 或 Pull Request 中披露漏洞。一份有效的报告应包括:

  • 受影响的 EasyTier 版本或提交;
  • 受影响的平台和相关配置,请移除其中的密钥等敏感信息;
  • 漏洞说明及其潜在影响;
  • 可复现的步骤或最小概念验证;
  • 已知的缓解措施或临时解决方案。

维护者将评估报告,并通过私有安全公告协调修复和披露。请在公开漏洞详情前为修复预留合理时间。

调查漏洞时,请勿访问或修改其他用户的数据、干扰服务或违反适用的法律法规。