Skip to content

Security: lulkebit/Oryon

Security

SECURITY.md

Security Policy

Supported Versions

Oryon is currently alpha software. Security fixes are only guaranteed for the latest state of the default branch.

Version Supported
main Yes
Latest pre-release tag Best effort
Older tags, commits, and forks No

Reporting a Vulnerability

Please do not open public GitHub issues for suspected vulnerabilities.

Use one of these private channels instead:

  1. GitHub's private vulnerability reporting flow, if the repository has it enabled.
  2. Direct contact with the maintainer via GitHub: https://github.com/lulkebit

Please include as much of the following as you can:

  • A clear description of the issue and its impact
  • The affected commit, branch, or release if known
  • Reproduction steps or a proof of concept
  • Any relevant logs, screenshots, or environment details
  • Whether you believe the issue is already being exploited

Response Process

  • We aim to acknowledge new reports within 5 business days.
  • We will confirm whether the issue is in scope and may ask follow-up questions.
  • Once a fix is available, we will coordinate disclosure with the reporter when possible.

Disclosure Expectations

Please give us a reasonable amount of time to investigate and ship a fix before public disclosure. We will do our best to keep you informed throughout the process.

There aren't any published security advisories