Skip to content

Security: alisen/KoteGuard

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.0.0a6 (latest)
< 1.0.0a6

Reporting a Vulnerability

Please do not open a public GitHub issue for security vulnerabilities.

Use one of these private channels:

What to include

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (optional)

Response time

You will receive an acknowledgement within 48 hours and a fix or mitigation plan within 7 days for critical issues.

Scope

KoteGuard handles:

  • Git worktree isolation
  • Sensitive file stubbing (.jks, google-services.json, .p12)
  • Copilot CLI command generation with --deny-tool flags

Security issues in these areas are considered high priority.

There aren't any published security advisories