Skip to content

Security: ymykhal/altura-medplum-demo

Security

SECURITY.md

Security Policy

⚠️ Important Notice

This repository contains a demonstration application only. It is not intended for production use or handling real Protected Health Information (PHI).

Reporting Security Issues

While this is a demo application, we appreciate responsible disclosure of any security concerns:

  1. Do NOT create public issues for security vulnerabilities
  2. Email security concerns to: [your-email@domain.com]
  3. Include detailed steps to reproduce the issue
  4. Allow reasonable time for response before public disclosure

Supported Versions

Version Supported
0.1.x

Security Guidelines for Contributors

  • Never commit real credentials or API keys
  • Use environment variables for configuration
  • Follow secure coding practices
  • Test for common vulnerabilities (XSS, injection, etc.)

Disclaimer

This application is NOT production-ready and lacks many security features required for healthcare applications. See HIPAA-DISCLAIMER.md for complete compliance information.

There aren't any published security advisories