Skip to content

Security: VibeCodeArena/vibe-evaluator

Security

SECURITY.md

Security Policy

Supported Versions

We actively support the latest version of this GitHub Action.

Version Supported
Latest
Older versions

Reporting a Vulnerability

If you discover a security vulnerability, please report it responsibly:

Please include:

  • Description of the issue
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

Response Timeline

  • Initial response: within 48 hours
  • Status update: within 5 business days
  • Fix release: depends on severity

Scope

This includes:

  • Code evaluation logic
  • GitHub Action workflows
  • Dependency vulnerabilities

Disclosure Policy

We follow responsible disclosure and will:

  • Acknowledge contributors
  • Fix critical issues promptly
  • Publish advisories when needed

There aren’t any published security advisories