Skip to content

Security: ReactSphere/Awesome-React

Security

SECURITY.md

Security Policy

Supported Versions

This repository is a curated list of React resources. There is no versioned software to maintain; however, we keep the listed resources up to date and remove links that are no longer safe or maintained.

Version Supported
main

Reporting a Vulnerability

We take the security of the Awesome-React community seriously. If you discover a security concern related to this repository — such as a listed resource that has become malicious, a compromised link, or any other security issue — please report it responsibly.

How to Report

  1. Do not open a public issue for security vulnerabilities.
  2. Report the vulnerability by emailing the maintainers or by using GitHub's private vulnerability reporting.
  3. Include as much detail as possible:
    • The affected resource or link
    • A description of the security concern
    • Steps to reproduce or verify the issue (if applicable)

What to Expect

  • We will acknowledge your report within 72 hours.
  • We will investigate and, if confirmed, remove or update the affected resource as quickly as possible.
  • We will keep you informed of our progress and notify you when the issue is resolved.

Scope

Security reports are welcome for:

  • Links in the curated list that redirect to malicious content or have been compromised.
  • Malicious pull requests or contributions attempting to introduce harmful content.
  • Any other security concern directly related to this repository.

Out of Scope

  • Vulnerabilities in the third-party tools, libraries, or websites listed in this repository. Please report those directly to the respective project maintainers.
  • General bugs or broken links that do not pose a security risk — for those, please open a regular issue.

Thank you for helping keep Awesome-React and its community safe! 🙏

There aren’t any published security advisories