Skip to content

Security: PAXECT-Interface/paxect-core-plugin

Security

SECURITY.md

PAXECT logo

Star this repo License CI CodeQL Issues Discussions Security

Security Policy

Supported Versions

Only the latest main branch and tagged releases are actively supported and reviewed for security issues.
Older versions are provided as-is without any security guarantee.

Version Supported
main
1.x ⚠️ Limited (best effort)

Reporting a Vulnerability

If you discover a security vulnerability, please report it privately:

  • Email: enterprise@PAXECT-Team@outlook.com (preferred)
  • GitHub: use the “Private vulnerability report” option under Security → Advisories
  • Do not create public issues or pull requests for unresolved vulnerabilities.

Disclosure Process

  1. Reports are acknowledged within 72 hours.
  2. A maintainer will contact you for details and a reproduction (if needed).
  3. A fix or mitigation will be prepared privately.
  4. Once resolved, a public advisory and changelog entry will be published.
  5. Researchers are credited (if they wish) after coordinated disclosure.

Guidelines

  • Follow responsible disclosure practices.
  • Avoid testing on production systems.
  • No social engineering, spam, or denial-of-service testing.

© 2025 PAXECT Systems. All rights reserved.

There aren’t any published security advisories