equipay

Security Policy

Reporting a Vulnerability

If you believe you’ve found a security issue in equiPay, please do not open a public GitHub issue. Instead, report it privately via one of:

When reporting, please include:

We’ll aim to acknowledge reports within 7 days and address confirmed issues promptly. Once a fix is released, you’re welcome to publish details of the finding if you’d like to be credited.

Scope

equiPay’s security surface is small because the extension makes no outbound network requests of its own. The main concerns we want to hear about:

Out of scope: