Skip to content

Security: Will-Luck/Docker-Sentinel

SECURITY.md

Security Policy

Supported Versions

Version Supported
v2.10.x Yes
< v2.10 No

Only the latest minor release receives security patches. Please upgrade to the latest version before reporting issues.

Reporting a Vulnerability

Do not open a public issue for security vulnerabilities.

Email security@pphserv.uk with:

  • A description of the vulnerability
  • Steps to reproduce
  • Affected version(s)
  • Any potential impact assessment

Response Timeline

  • Acknowledgement: Within 48 hours of report
  • Initial assessment: Within 7 days
  • Fix for critical issues: Within 30 days
  • Fix for non-critical issues: Included in the next scheduled release

You will be credited in the release notes unless you request otherwise.

Scope

This policy covers the Docker-Sentinel application and its official container images published to GHCR. Third-party forks and distributions are outside scope.

There aren’t any published security advisories