Skip to content

Security: techsouvik/agentIR

Security

SECURITY.md

Security Policy

Supported Versions

We provide security updates for the following versions of AgentIR:

Version Supported
0.1.x ✅

Reporting a Vulnerability

The AgentIR project takes security seriously. If you believe you have discovered a security vulnerability, please DO NOT report it via a public GitHub issue.

Instead, please report security vulnerabilities responsibly by sending an email to:

souvikaasds01@gmail.com

Please include:

  1. Type of issue (e.g. arbitrary code execution, path traversal, secret leak, DoS).
  2. Step-by-step instructions or proof-of-concept to reproduce the issue.
  3. Affected components (e.g. safe YAML parser, adapter AST visitor, runtime harness).
  4. Any potential mitigations or patches you have identified.

Disclosure Policy

  • We will acknowledge receipt of your vulnerability report within 48 hours.
  • We will provide a status update and estimated timeline for a fix within 7 business days.
  • A public security advisory and patched release will be coordinated once the issue has been resolved.

There aren't any published security advisories