Use this section to tell people about which versions of your project are currently being supported with security updates.
| Version | Supported |
|---|---|
| v1.0.x | ✅ |
| < v1.0 | ❌ |
This security policy applies to all smart contracts and related software within the ApexChainx-Contracts repository.
We take the security of our smart contracts seriously. If you believe you have found a security vulnerability in our contracts, please report it to us as described below.
Please do not report security vulnerabilities through public GitHub issues.
Instead, please email your findings to [security@apexchainx.example.com].
You can encrypt your communication using our PGP key:
-----BEGIN PGP PUBLIC KEY BLOCK-----
...
-----END PGP PUBLIC KEY BLOCK-----
(Please contact us for the actual PGP key if needed, or use the email provided above securely.)
- We will acknowledge receipt of your vulnerability report within 48 hours.
- We will provide a more detailed response to your report within 7 days, including whether we have reproduced the issue and an estimated timeline for remediation.
- We aim to resolve critical issues within 14 days of confirmation.
We ask that you do not disclose the vulnerability publicly until we have had a chance to address it. We will notify you when the issue has been patched and is safe to disclose. We appreciate your cooperation in keeping our ecosystem secure.