If you discover a security vulnerability in Flowlyt, please send an email to hi@harekrishnarai.me with details about the issue. Please include:
- A description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggestions for mitigations (if any)
I'll do my best to respond promptly and work with you to address the issue.
| Version | Supported |
|---|---|
| 0.0.1 | ✅ |
When using Flowlyt:
- Keep your installation updated to the latest version
- Follow remediation advice provided in scan reports
- Consider using Flowlyt in your CI pipeline to automate workflow scanning
- Use
--entropy-thresholdto adjust sensitivity of secret detection - Use
--policyto provide custom policy files - Use
--no-default-rulesto disable default rules if needed
For more information on securing GitHub Actions workflows: