| Version | Supported |
|---|---|
| 1.0.x | ✅ |
The EnvGuard project takes security vulnerabilities seriously.
If you believe you have discovered a security issue in EnvGuard (such as a secret-leak false negative, secret exposure flaw, or unsafe shell execution), please do not report it in a public GitHub issue.
Instead, please responsibly disclose it via:
- GitHub Security Advisories: Open a private advisory report
- Email:
latryee@proton.me(or contact via GitHub profile)
Please provide:
- A description of the issue and potential impact
- Steps or a minimal test fixture to reproduce the behavior
- Proposed remediation or patch if available
We will acknowledge receipt within 48 hours and work on a fix promptly.