Skip to content

Security: s1d9e/chainbreaker

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in ChainBreaker, please report it responsibly:

  1. Do NOT open a public GitHub issue
  2. Use GitHub's private vulnerability reporting
  3. Include: description, steps to reproduce, potential impact

Response Timeline

  • Acknowledgment: Within 48 hours
  • Assessment: Within 1 week
  • Fix: Depends on severity

Scope

  • ChainBreaker CLI tool
  • ChainBreaker Python package
  • Documentation (if it contains security-relevant info)

Out of Scope

  • Third-party packages analyzed by ChainBreaker
  • Registry API vulnerabilities

There aren't any published security advisories