Security
Security advisories
Every security issue fixed in SegAudit, which versions it affects and which release fixes it.
Advisories
No security advisories have been published for SegAudit.
Follow them in a feed reader with the Atom feed, or read advisories.json into your asset inventory.
How security fixes reach you
- Fixes are freeSecurity fixes ship in fix releases, which every edition may install, whatever its license says.
- Published with the fixAn advisory goes up when a fixed release is available, with the affected and fixed versions and any workaround.
- You hear about itEvery advisory goes into the feed below, and the updates page flags any version it affects.
- Signed and checkableFixed releases are signed in CI like every release, so you can verify them before they reach the plant.
Report a vulnerability
Email security@segaudit.com with the version, the steps to reproduce and the impact. Please do not open a public issue. The disclosure policy covers response times and safe harbor, andsecurity.txt has the same details in machine-readable form.