Skip to content

Security: 0x4riff/SagaraOps

SECURITY.md

Security Policy

Supported Versions

SagaraOps is currently in active development. Security fixes are applied to the latest main branch.

Reporting a Vulnerability

Please report security vulnerabilities privately.

Preferred channel:

Alternative channel:

  • Open an issue titled SECURITY: please contact maintainer without disclosing exploit details.

What to Include

  • Affected component(s)
  • Impact summary
  • Reproduction steps / PoC (if available)
  • Suggested mitigation (optional)

Response Targets (Best Effort)

  • Initial acknowledgment: within 72 hours
  • Triage decision: within 7 days
  • Fix timeline: depends on severity and complexity

Disclosure Policy

  • Please allow reasonable time for remediation before public disclosure.
  • Once patched, details may be disclosed responsibly for community learning.

There aren’t any published security advisories