🛡️ Found a security issue in a k8s-gitops project? Read on.
Maintainers will attempt to respond to/confirm reports within 2-3 days, but if you believe your report to be "critical" to user safety and security, please note as such in the subject. We have tens of thousands of users using our software, and take security vulnerabilities seriously.
When reporting an issue, where possible, please provide at least:
- The project and commit version the issue was identified at
- A proof of concept (plaintext; no binaries)
- Steps to reproduce
- Your recommended remediation(s), if any
To report a vulnerability via GitHub issues, click on the Issues
tab at the top of any repository and then click on the New issue
button.