Skip to content

Security: provero-org/provero

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in Provero, please report it through GitHub Security Advisories.

Do not open a public issue for security vulnerabilities.

What to include

  • Description of the vulnerability
  • Steps to reproduce
  • Affected versions
  • Potential impact

Response timeline

  • Acknowledgment: within 48 hours
  • Initial assessment: within 1 week
  • Fix and disclosure: coordinated with reporter, typically within 30 days

Supported versions

Version Supported
latest Yes

Scope

This policy applies to the Provero core engine, CLI, connectors, and Airflow provider.

There aren't any published security advisories