Skip to content

Security: christliebdela/Comment-Cleaner-VsCode-Ext

SECURITY.md

Security Policy

Reporting a Vulnerability

The Comment Cleaner Pro team takes security vulnerabilities seriously. We appreciate your efforts to responsibly disclose your findings and will make every effort to address them quickly.

To report a security vulnerability, please follow these steps:

  1. Do not disclose the vulnerability publicly.
  2. Open an issue marked "[SECURITY]" with a brief description (no details), or
  3. Send an email to [christliebdela@gmail.com] with details of the vulnerability.

Please include the following information in your report:

  • Description of the vulnerability
  • Steps to reproduce the issue
  • Potential impact of the vulnerability
  • Any possible mitigations you've identified

What to Expect

When you submit a vulnerability report, you can expect the following:

  • Confirmation of receipt within 48 hours
  • Assessment of the vulnerability within 1 week
  • Updates on our progress addressing the vulnerability
  • Credit for reporting the vulnerability (unless you prefer to remain anonymous)

Security Best Practices for Users

Comment Cleaner Pro processes all files locally on your machine and does not send any code or data externally. However, we still recommend following these security best practices:

  1. Always create backups before processing important files
  2. Update to the latest version of Comment Cleaner Pro to benefit from security patches
  3. Review the files generated by the extension before committing them to your project
  4. Report any suspicious behavior of the extension immediately

Thank you for helping us keep Comment Cleaner Pro secure!

There aren’t any published security advisories