Skip to content

Security: WillyBilly-Cyber/Tandem-Environment-Lab

Security

SECURITY.md

Security

Reporting a vulnerability

Please do not open a public issue for a suspected security vulnerability. Contact the project owner privately through the contact details on sectioncuts.com.

Credential handling

  • Never commit .env files, API keys, passwords, or private keys.
  • Use a temporary Tandem test model and a dedicated, revocable webhook secret.
  • Do not enter client or production credentials into the hosted demo.
  • Revoke test credentials when testing is complete.

There aren't any published security advisories