Skip to content

Security: y114git/G3M

SECURITY.md

Security Policy

Supported Versions

Security fixes are provided on a best-effort basis for the latest stable branch and the latest published release.

Version Supported
latest release yes
stable yes
older releases no

Reporting a Vulnerability

Please report security issues privately.

  1. Preferred channel: GitHub Security Advisories.
  2. If advisory reporting is unavailable, contact the maintainer privately before publishing exploit details.
  3. Include:
    • affected G3M version
    • operating system and architecture
    • reproducible steps
    • impact assessment
    • minimal proof of concept

Response Expectations

  • Initial acknowledgement: best effort within 72 hours.
  • Triage and severity assessment: best effort within 14 days.
  • Fix timeline depends on severity and reproducibility.

Scope Notes

  • G3M includes bundled tools and local file operations.
  • Treat untrusted archives, mods, scripts, and external downloads as untrusted input.

There aren’t any published security advisories