Skip to content

Security: sanityops-org/sanityops-cli

Security

SECURITY.md

Security Policy

Supported Versions

We release patches for security vulnerabilities for the following versions:

Version Supported
0.1.x ✅

Reporting a Vulnerability

We take security vulnerabilities seriously. If you discover a security vulnerability, please report it responsibly.

How to Report

Do not open a public GitHub issue. Instead, please report security vulnerabilities to:

Email: security@sanityops.org

What to Include

Please include the following information:

  • Description of the vulnerability
  • Steps to reproduce the issue
  • Affected versions
  • Potential impact
  • Suggested fix (if any)

Response Timeline

Stage Timeline
Acknowledgment Within 48 hours
Initial Assessment Within 7 days
Fix Development Depends on severity
Release As soon as possible

Disclosure Policy

We follow a coordinated disclosure process:

  1. We will acknowledge your report within 48 hours
  2. We will provide an initial assessment within 7 days
  3. We will work on a fix and prepare a release
  4. We will notify you before public disclosure
  5. We will credit you in the release notes (if desired)

Safe Harbor

We support responsible security research. We will not pursue legal action against individuals who:

  • Report security vulnerabilities in good faith
  • Avoid accessing, modifying, or deleting data that is not theirs
  • Do not disrupt our services or users
  • Provide us reasonable time to fix the issue before public disclosure

Thank you for helping keep Sanityops CLI and its users safe!

There aren't any published security advisories