BloxAPI

Security Policy

Supported Versions

We currently provide security updates for the following versions of BloxAPI:

Version Supported
2.x.x :white_check_mark:
1.5.x :white_check_mark:
1.0.x-1.4.x :x:
< 1.0 :x:

Reporting a Vulnerability

We take the security of BloxAPI seriously. If you believe you’ve found a security vulnerability, please follow these steps:

  1. Do not disclose the vulnerability publicly
  2. Email us at security@bloxapi.com with details about the vulnerability
  3. Include the following information in your report:
    • Type of vulnerability
    • Full path to source file(s) related to the issue
    • Steps to reproduce
    • Potential impact
    • Suggested fix if possible

Response Timeline

Security Best Practices

When using BloxAPI, we recommend following these security best practices:

API Keys and Authentication

Rate Limiting and Throttling

Data Handling

Network Security

Deployment Security

Security Features

BloxAPI includes several security features:

Vulnerability Disclosure Policy

We believe in responsible disclosure of security vulnerabilities. After we’ve addressed a security issue:

  1. We will publish a security advisory through GitHub’s security advisory feature
  2. We will credit the reporter (unless anonymity is requested)
  3. We will provide details about the vulnerability, its impact, and how to remediate it

Security Updates

Security updates are delivered through our standard release channels. For critical vulnerabilities, we may issue out-of-cycle releases.

To ensure you’re using a secure version:

Security Contact

For security-related inquiries or to report vulnerabilities:

Fingerprint: 5F3D F123 B8FC A987 D367 7B21 A76D 9C36 F418 EA45