Skip to content

Security: deeflect/vasted

Security

SECURITY.md

Security Policy

Supported Versions

Security fixes are applied on the default branch.

Reporting a Vulnerability

Please do not disclose security vulnerabilities in public issues.

Open a private report with:

  • A clear description of the issue
  • Reproduction steps or proof-of-concept
  • Potential impact
  • Suggested mitigation (if known)

If private reporting channels are not available yet, open a minimal public issue without exploit details and request secure contact.

Secrets and Credentials

Never share:

  • Vast API keys
  • Bearer tokens
  • Telegram bot tokens

When posting logs, redact all secrets and private hostnames/IPs.

There aren’t any published security advisories