| Version | Supported |
|---|---|
| 0.1.x | Yes |
If you discover a security vulnerability in VoLo, please report it responsibly. Do not open a public GitHub issue.
Instead, please email psirt@nvidia.com with:
- A description of the vulnerability
- Steps to reproduce
- Affected versions
- Any potential impact
You should receive an acknowledgment within 5 business days. We will work with you to understand and address the issue before any public disclosure.
This policy covers the VoLo source code and its Docker images. Vulnerabilities in third-party dependencies and external systems, including robot simulators, policy servers, model services, and benchmark environments, should be reported to their respective maintainers.