Skip to content

Security: SiddakBath/omniforge

Security

SECURITY.md

Security Policy

Supported versions

OmniForge is currently pre-1.0. Security fixes are applied to the latest minor release on the default branch.

Reporting a vulnerability

Please do not disclose vulnerabilities publicly in issues or discussions.

Report privately by emailing: siddak.bath@gmail.com

Include:

  • Affected component/package
  • Reproduction details
  • Impact assessment
  • Suggested fix (if available)

We will acknowledge receipt within 3 business days and provide status updates as investigation progresses.

Disclosure process

  • Confirm and triage the report
  • Develop and validate a fix
  • Coordinate disclosure timing
  • Publish release notes and mitigation guidance

There aren't any published security advisories