Skip to content

Security: aaronlmathis/gosight-agent

SECURITY.md

🔐 Security Policy

Supported Versions

We are currently in active development and do not yet offer long-term support or versioned releases. Security-related patches are prioritized and released as soon as possible in the main branch.

Version Supported?
main ✅ Yes
<0.x ❌ No

Reporting a Vulnerability

If you discover a security vulnerability in GoSight, please report it responsibly.

📫 Contact

Please include as much detail as possible:

  • Affected component(s)
  • Steps to reproduce
  • Potential impact
  • Suggested fixes (if any)

Disclosure Policy

We follow a responsible disclosure process. Once a vulnerability is confirmed:

  1. A patch will be developed and tested.
  2. Maintainers may contact affected users or update documentation if needed.
  3. A public disclosure may be made via GitHub releases or advisories.

Future Plans

As GoSight matures, we will introduce:

  • Signed releases
  • Hardened default configurations
  • Security CI checks & scanning
  • Integration with OpenSSF Best Practices

Thanks for helping keep GoSight secure!

There aren’t any published security advisories