Skip to content

Security: AxmeAI/axme

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

Please do not open a public GitHub issue for security vulnerabilities.

Report security issues to: security@axme.ai

We will acknowledge receipt within 48 hours and aim to provide a resolution timeline within 5 business days.

Scope

Security reports are welcome for:

  • axme-control-plane (runtime gateway and services)
  • axme-sdk-* (SDK clients)
  • axme-cli
  • cloud.axme.ai and associated infrastructure

Disclosure Policy

We follow responsible disclosure. We ask that you:

  • Give us reasonable time to investigate and patch before public disclosure
  • Do not access or modify user data beyond what is needed to demonstrate the vulnerability
  • Act in good faith

Alpha Notice

AXME is currently in Alpha. The security posture is actively hardened. Known limitations are documented in the security overview in axme-docs.

There aren’t any published security advisories