Version | Supported |
---|---|
1.0.x | ✅ |
< 1.0 | ❌ |
If you discover a security vulnerability within Orbit, please send an email to [[email protected]]. All security vulnerabilities will be promptly addressed.
Please do not publicly disclose the issue until it has been addressed by the team.
- Email your findings to [[email protected]]
- You will receive a response within 48 hours
- We will investigate and keep you updated on our findings
- Once the issue is confirmed and fixed, we will notify you
- We will publicly disclose the issue (if applicable)
When using Orbit:
- Keep your bot token secure and never commit it to version control
- Regularly rotate your bot token
- Use environment variables for sensitive information
- Implement proper permission checks in your commands
- Regularly update dependencies to patch security vulnerabilities