| Version | Supported |
|---|---|
| 0.1.x | ✅ |
If you discover a security vulnerability in go-certmanager, please report it responsibly:
- Do not open a public issue
- Email security concerns to security@attestant.io
- Include a detailed description of the vulnerability
- Provide steps to reproduce if possible
We will acknowledge receipt within 48 hours and provide a detailed response within 7 days.
This library handles TLS certificates and private keys. Users should:
- Store private keys securely with appropriate file permissions
- Use secure majordomo confidants for production environments
- Regularly rotate certificates before expiry
- Monitor certificate reload logs for failures