Skip to content

Security: Armur-Ai/vibescan

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
latest

Reporting a Vulnerability

If you discover a security vulnerability in Armur, please report it responsibly:

  1. Do not open a public GitHub issue
  2. Email security@armur.ai with:
    • Description of the vulnerability
    • Steps to reproduce
    • Potential impact
  3. You will receive a response within 48 hours
  4. We will coordinate a fix and disclosure timeline with you

Scope

The following are in scope:

  • The Armur CLI binary (armur)
  • The Armur server (armur-server)
  • The Armur Docker images
  • The Armur API endpoints

Recognition

We maintain a Security Hall of Fame for responsible disclosures. Contributors who report valid vulnerabilities will be credited (with their permission) in our release notes.

There aren't any published security advisories