Skip to content

Security: djnadackal/dbfuse-ai

Security

.github/SECURITY.md

Security Policy

Supported Versions

We aim to support the latest released version of dbfuse-ai and the most recent minor versions.

Version Supported
Latest (N) ✅ Fully supported
N-1 ⚠️ Best-effort
Older ❌ Not supported

Reporting a Vulnerability

If you believe you’ve found a security vulnerability in dbfuse-ai, please do not open a public issue.

Instead, contact us privately at:

Please include as much detail as possible:

  • Steps to reproduce
  • A minimal proof-of-concept if available
  • Affected version / commit
  • Any potential impact you’ve identified

Disclosure Process & Timeline

  1. We will acknowledge your report within 5 business days.
  2. We’ll work with you to:
    • Understand the issue
    • Confirm the impact
    • Identify a fix
  3. Once a fix is ready, we will:
    • Release a patched version
    • Publish a security advisory with credits (if you want)
  4. We aim to resolve critical issues within 30 days of confirmation whenever possible.

We greatly appreciate responsible disclosure and will credit researchers who help keep dbfuse-ai secure.

There aren’t any published security advisories