Skip to content

Security: LZH0713/codex5.6-coldbrew

Security

SECURITY.md

Security Policy

Supported versions

Version Supported
3.0.1 ✅
Earlier versions ❌

Reporting a vulnerability

Please use this repository's Security → Report a vulnerability flow to report vulnerabilities privately. Include:

  • affected file and version;
  • reproduction steps;
  • expected and observed behavior;
  • impact and a suggested fix, if available.

Do not publish credentials, tokens, private data, or an active exploit in a public issue.

Scope

The Skill itself is reviewable Markdown/YAML. The release also contains transparent PowerShell, POSIX shell, Python, and GitHub Actions automation for installation, uninstall, verification, packaging, and publishing. Reports about unintended file operations, archive traversal, checksum bypass, installer rollback failures, or workflow permission issues are in scope.

The project's prompt claims are not a security boundary and cannot supersede the model host's runtime rules or permissions.

There aren't any published security advisories