Skip to content

Security: hunterassembly/hemingway-ai

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security issue in Hemingway, please do not open a public issue.

Instead:

  1. Use GitHub's private vulnerability reporting (Security Advisory) for this repository when available.
  2. Include clear reproduction steps, impact, and affected versions.

What to Include

  • Vulnerability type and impact
  • Reproduction steps or proof of concept
  • Affected files or routes
  • Suggested mitigation if known

Response Expectations

Maintainers will acknowledge valid reports and work on a fix as quickly as possible. When possible, we will publish a coordinated fix and release notes.

There aren’t any published security advisories