Skip to content

Security: flare-foundation/go-verifier-api

Security

SECURITY.md

Security

Supported Versions

We recommend using the latest released version. Only the most recent release receives security patches.

Deployment Scope

This service is designed for internal deployment behind Flare's infrastructure. It is not intended to be exposed directly to the public internet. Access is controlled via API key authentication (X-API-KEY header).

Reporting Vulnerabilities

Please do not report a vulnerability using an issue or any other public channel.

To disclose a vulnerability, reach out to any of the codeowners.

Vulnerability Disclosures

Critical vulnerabilities will be disclosed via GitHub's security advisory system.

Audit Reports

Audit reports are published on Flare's Developer Hub. The full audit scope is listed in CONTRIBUTING.md.

There aren't any published security advisories