Skip to content

Latest commit

 

History

History
19 lines (11 loc) · 785 Bytes

File metadata and controls

19 lines (11 loc) · 785 Bytes

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in arazzo-cli, please report it privately using GitHub's built-in vulnerability reporting:

  1. Go to the Security tab
  2. Click Report a vulnerability
  3. Provide a description of the issue and steps to reproduce

Please do not open a public issue for security vulnerabilities.

Response

I'll acknowledge reports within a reasonable timeframe and provide an update when a fix is available. There is no formal SLA — this is a single-maintainer project.

Scope

This policy covers the arazzo-cli binary, the arazzo-runtime crate, and the VS Code debug adapter. It does not cover third-party dependencies (report those upstream).