| Version | Supported |
|---|---|
| v0.1.x | Yes |
| < v0.1.0 | No |
- Do not disclose vulnerabilities in public issues.
- Use GitHub Security Advisory draft first.
- If advisory is unavailable, contact maintainers through organization channels with:
- impact summary
- reproduction steps
- affected scripts/versions
- mitigation suggestion
We will acknowledge within 3 business days and provide a triage plan.
- Avoid embedding any real host credential in scripts or docs.
- Keep sample paths generic placeholders.
- Prefer non-admin SSH account for daily operations.
- Review command safety before batch execution.