Security Policy

July 29, 2026 ยท View on GitHub

Supported version

Security fixes are applied to the latest release and the default branch.

Reporting a vulnerability

Please use GitHub's private vulnerability reporting flow:

https://github.com/kevin592/codex-full-stack-workflow/security/advisories/new

Do not open a public issue containing exploit details, credentials, private repository content, or user data.

Include the affected version, reproduction steps, impact, and any suggested mitigation. You should receive an acknowledgement within seven days. A fix and disclosure timeline will be coordinated based on severity.

Only test systems and repositories that you own or are authorized to assess.