Skip to content

Security: Kaz9487/Reproera

SECURITY.md

Security policy

Supported versions

Reproera is currently an alpha release. Security fixes are provided only for the latest revision on the main branch.

Version Supported
Latest main Yes
Older revisions No

Reporting a vulnerability

Do not include credentials, private server names, home-directory paths, or access tokens in a public issue.

Use GitHub's private vulnerability reporting from the repository's Security tab. Include the affected command, Reproera version or commit, operating system, shell version, impact, and a minimal reproduction when it is safe to do so. Suspected command injection, archive traversal, checksum bypass, or unsafe shell-initialization behavior should always be reported privately.

You can expect an acknowledgement within seven days. No remediation deadline is guaranteed while the project remains alpha.

There aren't any published security advisories