Skip to content

Security: jia57b/chainsmith

Security

SECURITY.md

Security Policy

Security is a top priority for ChainSmith.

Supported Versions

We generally support security fixes for the latest released minor version.

Version Supported
0.0.x

Reporting a Vulnerability

Please do not open a public GitHub issue for security vulnerabilities.

Use one of the following private reporting channels:

  1. GitHub Security Advisories (preferred, if enabled)
    • Go to the repository Security tab → AdvisoriesNew draft security advisory.
  2. Email

When reporting, please include:

  • A clear description of the issue and impact
  • Steps to reproduce (proof-of-concept if available)
  • Affected versions and environments
  • Any relevant logs, stack traces, or screenshots (redact secrets)

What to Expect

  • We aim to acknowledge receipt within 2 business days.
  • We will work with you to validate the report and determine severity.
  • If a fix is required, we will coordinate a responsible disclosure timeline.

Thank you for helping keep ChainSmith and its users safe.

There aren’t any published security advisories