Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security concern #49

Open
plumsirawit opened this issue Oct 4, 2022 · 1 comment
Open

Security concern #49

plumsirawit opened this issue Oct 4, 2022 · 1 comment
Labels
help wanted Extra attention is needed

Comments

@plumsirawit
Copy link
Owner

Since this project has a relatively "low-stake" development phase, but has a relatively "high-stake" practical applications (i.e. problemsetting in contests), security issues might be one of the important concerns right now.

I tried to write the security rules carefully. However, there may still be bugs or "security holes". Penetration tests and bug reports are appreciated.

Even though I think I'm careful, but as long as I cannot prove rigorously that this thing is "secure", I'm always prepared to accept "security holes". For normal users: please keep in mind that there MAY be security holes which haven't been found yet. And if I find it I'll report ASAP. Nevertheless, I'm going to trust my procedures for now because I'm pretty sure (as of myself) that I'm careful enough. (And again, my sure can't be so sure as long as I can't prove it, so ... I'd sadly ask you to take the risk until we can certify the security of this thing)

If you want to do some pentest or manage the security at a higher level, feel free to contact me. (or at least give some comments in this issue)

@plumsirawit plumsirawit added the help wanted Extra attention is needed label Oct 4, 2022
@plumsirawit
Copy link
Owner Author

As seen in https://github.com/plumsirawit/task-pdf-writer/blob/main/README.md, update: SECURITY BOUNTY for up to $200.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
help wanted Extra attention is needed
Projects
Status: Backlog
Development

No branches or pull requests

1 participant