Skip to content

Security: MechBot-2x/mechbot-2x

SECURITY.md

MechBot 2.0x Security Policy

Supported Versions

The following versions currently receive security updates:

Version Support Status EOL Date Critical Support Until
2.1.x 2026-03-01 2026-06-01
2.0.x ⚠️ (LTS) 2025-12-01 2025-12-01
1.5.x 2025-06-01 -
< 1.5 2024-12-01 -

✅ = Full Support
⚠️ = Critical Fixes Only
❌ = Unsupported

Vulnerability Reporting

Disclosure Policy

  • Private disclosure window: 90 days from initial report
  • Public disclosure: After patch availability or 90 days (whichever comes first)
  • Response SLA: Initial response within 72 business hours

Reporting Channels

  1. Preferred: [email protected] (PGP Key [0xAB3F2C1D])
  2. Fallback: GitHub Security Advisories (for GitHub-native projects)
  3. Emergency: +1-555-MECH-SEC (Security Operations Center)
-----BEGIN PGP PUBLIC KEY BLOCK-----
[Redacted PGP Key for actual implementation]
-----END PGP PUBLIC KEY BLOCK-----

There aren’t any published security advisories