Skip to content

Security: OneManLabs/cvd

Security

SECURITY.md

Security Policy

Supported version

One Man Labs supports the current main branch.

Report a vulnerability

Use the private security-advisory function in this GitHub repository. Do not create a public issue for a vulnerability.

Include the affected commit, the reproduction steps, the expected result, and the actual result.

Do not attach a private model, data set, image, password, or access token.

Deployment warning

CVD is a local development tool. It does not provide user authentication. Do not expose it directly to an untrusted network.

There aren't any published security advisories