CLEAR takes the security of our software products and services seriously, which includes all source code repositories managed through our GitHub organizations.
For security reasons, please DO NOT report security vulnerabilities using GitHub’s public issues reporting or discuss them with any parties outside of the CLEAR Security team. To report CLEAR source code related security vulnerabilities or issues, email [email protected] and include as much information as available. Examples of details to include are:
- Type of issue (e.g. buffer overflow, SQL injection, cross-site scripting, etc.)
- Full paths of source file(s) related to the manifestation of the issue
- The location of the affected source code (tag/branch/commit or direct URL)
- Any special configuration required to reproduce the issue
- Step-by-step instructions to reproduce the issue
- Impact of the issue, including how an attacker might exploit the issue
By accessing CLEAR source code you agree to abide by CLEAR's Terms of Use and Privacy Policy.
Where possible, communicating vulnerabilities in English is preferable.