Skip to content

Security: Jpkoech30/roo-mini

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
1.x

Reporting a Vulnerability

If you discover a security vulnerability, please do not open a public issue.

Instead, email the maintainer directly or open a private security advisory on GitHub:

  1. Go to https://github.com/Jpkoech30/roo-mini/security/advisories
  2. Click "New advisory"
  3. Provide details about the vulnerability

You should receive a response within 48 hours. We will keep you informed as the issue is investigated and resolved.

Best Practices

  • Never commit .env files or API keys to the repository
  • Use token-scoped API keys with minimal required permissions
  • Review all generated code before executing it
  • Run in a sandboxed environment when working with untrusted inputs

There aren't any published security advisories