SegAudit
Security

Security advisories

Every security issue fixed in SegAudit, which versions it affects and which release fixes it.

Advisories

No security advisories have been published for SegAudit.

Follow them in a feed reader with the Atom feed, or read advisories.json into your asset inventory.

How security fixes reach you

  • Fixes are freeSecurity fixes ship in fix releases, which every edition may install, whatever its license says.
  • Published with the fixAn advisory goes up when a fixed release is available, with the affected and fixed versions and any workaround.
  • You hear about itEvery advisory goes into the feed below, and the updates page flags any version it affects.
  • Signed and checkableFixed releases are signed in CI like every release, so you can verify them before they reach the plant.

Report a vulnerability

Email security@segaudit.com with the version, the steps to reproduce and the impact. Please do not open a public issue. The disclosure policy covers response times and safe harbor, andsecurity.txt has the same details in machine-readable form.