Skip to content

Security: oseghalep/ari-cli

Security

SECURITY.md

πŸ“„ SECURITY.md

# Security Policy

## Supported Versions

The following table outlines the current support status of this project:

| Version | Supported |
|---------|-----------|
| 1.x     | βœ… Yes     |

Only the latest stable release is officially supported with security updates. Older versions may not receive patches.

---

## Reporting a Vulnerability

If you discover a security vulnerability in ARI CLI, please report it **privately** and **responsibly** to minimize user impact.

### πŸ“¬ How to report

- **Email:** oseghale.okosun@gmail.com  
- **GitHub:** Alternatively, [open a private GitHub security advisory](https://github.com/oseghalep/ari-cli/security/advisories/new) if applicable.

Please include as much detail as possible:

- A description of the vulnerability
- Steps to reproduce
- The potential impact
- Any possible fixes or mitigations

We aim to acknowledge and respond to all reports within **72 hours**.

---

## Response Process

1. Acknowledge the report
2. Investigate and validate the issue
3. Prepare and test a fix
4. Release a patched version
5. Publicly disclose the vulnerability after patch

---

Thank you for helping keep ARI CLI and the community secure!

There aren't any published security advisories