Skip to content

Security: eli-labz/Cognitive-Core-Skills

Security

SECURITY.md

Security Policy

Supported Versions

This project publishes a versioned taxonomy rather than shipping application releases with parallel maintenance branches. Security and data-integrity fixes are applied to the latest published taxonomy version.

Version Supported
1.0.x
< 1.0

Reporting a Vulnerability

If you discover a security vulnerability, a data-integrity issue, or a supply-chain concern (for example in scripts/, CI workflows, or generated artifacts), please report it privately using GitHub's Security Advisories feature:

  1. Go to the repository's Security tab.
    1. Select "Report a vulnerability" to open a private advisory.
      1. Include reproduction steps, affected files or paths, and potential impact.

      2. Please do not open a public issue for suspected security problems.

      3. You can expect an initial response within 5 business days. Confirmed issues will be tracked through a private advisory until a fix is published, at which point the advisory and a changelog entry will be made public. Declined reports will receive an explanation of why the issue was not accepted.

      4. For non-security bugs, please use the standard issue templates instead.

There aren't any published security advisories