Skip to content

Security: Blue-B/Alienbin

Security

SECURITY.md

Security Policy

Supported versions

Version Supported
2.x yes
1.x (legacy) no, end of life, do not deploy

v1 contains known defects documented in GHSA-hqvr-6v89-gwff. It is retained only as git history (v1-legacy tag).

Reporting a vulnerability

Please use GitHub private vulnerability reporting: https://github.com/Blue-B/Alienbin/security/advisories/new

  • Do not open public issues with exploit details or proof-of-concept payloads.
  • Include: affected endpoint/file, impact assessment, and reproduction steps if possible.
  • No email address is published for this project; the GitHub channel above is the only reporting route.

Response policy

  • Acknowledgment: within 7 days of report.
  • Triage result and severity estimate: within 14 days.
  • Fixes target the latest minor release. Critical issues may warrant an out-of-band patch.
  • Credit: reporters are credited in the advisory unless they prefer otherwise.
Learn more about advisories related to Blue-B/Alienbin in the GitHub Advisory Database