Skip to content

Security: GaoSSR/kiri

Security

SECURITY.md

Security Policy

Supported versions

Kiri is in early 0.x releases. Security fixes target the latest published release.

Version Supported
0.1.x Latest only

Reporting a vulnerability

Please report security issues privately through GitHub Security Advisories:

https://github.com/GaoSSR/kiri/security/advisories/new

Do not open a public issue for a vulnerability before maintainers have had time to investigate and publish a fix.

Please include:

  • affected version
  • operating system and CPU architecture
  • exact command used
  • expected behavior
  • observed behavior
  • minimal reproduction steps

Scope

Security reports are most useful when they involve Kiri itself, its release artifacts, npm packages, Homebrew formula, or installer scripts.

Reports about unsupported Linux or Windows runtime behavior may be handled as normal platform-support issues until those platforms are released.

There aren't any published security advisories