The following versions of ARTEFACT are currently supported with security updates:
| Version | Supported |
|---|---|
| 0.4.0a | ✅ Fully supported |
| < 0.4.0a | ❌ No longer supported |
If you discover a security vulnerability in ARTEFACT, please follow these steps:
-
Do not disclose the vulnerability publicly.
- Publicly disclosing a vulnerability before it is fixed could put users at risk.
-
Contact the Maintainer:
- Email: Rizzy1857@gmail.com
- Use the subject line:
[SECURITY] Vulnerability Report for ARTEFACT
-
Provide the Following Information:
- A detailed description of the vulnerability.
- Steps to reproduce the issue.
- Any potential impact or risk to users.
- (Optional) Suggested fixes or patches.
-
Response Time:
- We aim to acknowledge receipt of your report within 48 hours.
- A fix or mitigation plan will be shared within 7 days, depending on the complexity of the issue.
To ensure the security of your usage of ARTEFACT:
- Always use the latest version of the tool.
- Avoid running the tool with elevated privileges unless necessary.
- Verify the integrity of downloaded files using the hashing features provided by ARTEFACT.
We will publish security updates and patches as needed. Users are encouraged to:
- Subscribe to the repository's notifications for release updates.
- Regularly check the CHANGELOG.md for details on security fixes.
We appreciate the efforts of the security community in identifying and responsibly disclosing vulnerabilities. Thank you for helping us make ARTEFACT more secure!