Skip to content

Security: Flowbudget/OpEnUV

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
0.1.x

Reporting a Vulnerability

We take the security of OpEnUV seriously. If you discover a security vulnerability, please report it responsibly.

Do not report security vulnerabilities through public GitHub issues.

Instead, please send an email to openeuv-security@nousresearch.com with the following information:

  • A description of the vulnerability
  • Steps to reproduce the issue
  • The version(s) of OpEnUV affected
  • Any potential impact you have identified

You should receive a response within 48 hours. If you do not, please follow up to ensure we received your message.

What to expect

  • We will acknowledge receipt of your report within 48 hours.
  • We will provide an estimated timeline for a fix.
  • We will notify you when the vulnerability is fixed.
  • You will be credited for the discovery (unless you request otherwise).

Disclosure Policy

When a vulnerability report is received, we will:

  1. Confirm receipt and begin investigation.
  2. Work on a fix and coordinate a release timeline.
  3. Publish a security advisory and credit the reporter (with consent).

We aim to release fixes as soon as possible, depending on the severity and complexity of the issue.

Thank you for helping keep OpEnUV and its users safe.

There aren't any published security advisories