PGDUMPSTER
Security
Backup software handles privileged access to important infrastructure. Security reports should therefore be handled privately.
Security policy
The product repository's SECURITY.md is the authoritative security policy. It explains the current reporting and supported-version posture.
How to report
Use GitHub Private Vulnerability Reporting if it is available for the repository. If not, contact kontakt@mkpdigital.dk with the subject [pgDumpster security]. Do not open a public issue for a vulnerability that could expose data, secrets or recovery safety.
Include
- Affected version or commit
- Impact
- Reproduction steps
- Relevant sanitized logs
- Suggested mitigation, if known
Do not include real credentials, access tokens, database passwords or customer data in a report.
Advisories
Check GitHub Security Advisories for published advisories.
