Skip to content

Security: duongynhi000005-oss/screeps-bounty-arena

Security

SECURITY.md

Security Policy

Reporting security issues

Please report sensitive issues privately to the repository owner rather than opening a public issue.

Sensitive data

Do not commit:

  • Screeps auth tokens
  • private server credentials
  • .env files
  • local deployment config
  • game account secrets
  • generated game state or memory dumps containing private info

Scope

This is a local-first Screeps bot/codebase. Most contributions should be source, tests, docs, or CI changes.

External links and artifacts

Do not use external download links, archives, or file hosts for code review. Code must be visible in the GitHub PR diff. Proof should be pasted into the PR or attached in GitHub when needed.

There aren't any published security advisories