Skip to content

Security: mlx-labs/mlx-labs.github.io

Security

SECURITY.md

Security policy

Supported scope

This repository hosts static HTML, CSS, JavaScript, and JSON on GitHub Pages. There is no server-side application code in this repo.

Reporting a vulnerability

If you find a security issue (e.g. malicious script injection via PR, dependency compromise in CI):

  1. Email admin@multilogin-labs.github.io with steps to reproduce
  2. Do not open a public issue for exploitable details
  3. Allow up to 14 days for initial response

Out of scope

  • Third-party checkout flows (Multilogin and other vendors)
  • Social engineering against lab readers
  • Findings that require physical access to a contributor machine

Safe harbor

We appreciate responsible disclosure and will credit reporters in CHANGELOG.md when fixes land (unless you prefer anonymity).

There aren't any published security advisories