Skip to content

Security: OffloopHQ/dsh-acp

SECURITY.md

Security policy

Supported versions

Security fixes are applied to the latest published preview version. Upgrade to the newest release before reporting behavior that may already be fixed.

Reporting a vulnerability

Do not open a public issue for a suspected vulnerability. Use GitHub's private vulnerability reporting form so the repository maintainers can investigate without disclosing the report publicly.

Do not include live credentials, API keys, prompts, customer data, or other secrets. Replace them with minimal synthetic reproductions wherever possible.

There aren't any published security advisories