Skip to content

Security: AUTHENSOR/ai-seclists

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in AI SecLists or any Authensor project, please report it responsibly.

Email: security@authensor.dev

We will acknowledge receipt within 48 hours and provide a timeline for resolution.

Scope

AI SecLists contains synthetic attack payloads for testing purposes. The payloads themselves are intentionally adversarial -- that is the point of the project. Security reports should focus on:

  • Vulnerabilities in the utility scripts (utils/)
  • Supply chain issues (compromised dependencies, malicious modifications)
  • Accidental inclusion of real credentials or PII (all entries should be synthetic)

Responsible Use

These payloads are for testing systems you own or have explicit authorization to test. See LICENSE for terms.

There aren't any published security advisories