Skip to content

Security: clearverified/clear-ios-sdk

Security

SECURITY.md

Source Code Security

CLEAR takes the security of our software products and services seriously, which includes all source code repositories managed through our GitHub organizations.

Reporting Security Issues

For security reasons, please DO NOT report security vulnerabilities using GitHub’s public issues reporting or discuss them with any parties outside of the CLEAR Security team. To report CLEAR source code related security vulnerabilities or issues, email [email protected] and include as much information as available. Examples of details to include are:

  • Type of issue (e.g. buffer overflow, SQL injection, cross-site scripting, etc.)
  • Full paths of source file(s) related to the manifestation of the issue
  • The location of the affected source code (tag/branch/commit or direct URL)
  • Any special configuration required to reproduce the issue
  • Step-by-step instructions to reproduce the issue
  • Impact of the issue, including how an attacker might exploit the issue

Policy

By accessing CLEAR source code you agree to abide by CLEAR's Terms of Use and Privacy Policy.

Preferred Languages

Where possible, communicating vulnerabilities in English is preferable.

There aren’t any published security advisories