GitLocalize is a hosted service. Security fixes are applied continuously to production, so there are no separately supported versions or maintenance branches.
This policy covers:
- The GitLocalize web app and API at gitlocalize.com
- The GitLocalize GitHub App and its repository integrations
- The public repositories under this organization
We take the security of GitLocalize seriously. If you believe you have found a security vulnerability, please do not open a public issue.
Instead, please report it to us directly:
- Email: Send the details to contact@gitlocalize.com.
- Details: Please include as much information as possible (steps to reproduce, affected endpoints or repositories, and any proof of concept) to help us verify and fix the issue.
Please give us a reasonable opportunity to resolve the issue before disclosing it publicly.
- We will acknowledge your report within 48 hours.
- We will provide an estimated timeline for the fix.
- We will notify you once the fix is deployed.
Thank you for helping keep GitLocalize safe! ❤️