Files
boc/landvex/node_modules/helmet/SECURITY.md
T
Bernt 6989a98d75 feat: Passwordless cross-device authentication
- Arkitektur: docs/auth/passwordless-architecture.md
- Backend: iom/quixzoom-auth-service/ (FastAPI + Redis)
- Webb: quixzoom-market-pages/se/login/ (QR-kod + polling)
- App: iom/quixzoom-app/src/features/auth/ (push + deep links)

Flöde: QR-kod → app-godkännande → webb-inloggad
2026-07-07 07:11:50 +00:00

12 lines
607 B
Markdown

# Security issue reporting & disclosure process
Please reach out if you think you've found a security issue.
Email Evan Hahn at <me@evanhahn.com>, on Signal at [EvanHahn.64](https://signal.me/#eu/vDide_HmUgHnNa0usMXq8oHAA0gnl5dzCqDeHyXhkeIbIiOcPVhCZKXIZteSqoc8), or [in other ways](https://evanhahn.com/contact).
My playbook for security issues:
- Acknowledge and address the concern as soon as possible
- Issue advisories (CVEs, for example) as needed. Public disclosure may be embargoed to give people time to update
- Consider patching non-current major versions depending on popularity and severity