Skip to content

Security: augmnt/subagents.sh

Security

SECURITY.md

Security Policy

Supported Versions

The following versions of subagents.sh are currently being supported with security updates.

Version Supported
0.2.0
< 0.2.0

Reporting a Vulnerability

We take the security of subagents.sh seriously. If you discover a security vulnerability, please follow these steps:

How to Report

  1. Do NOT create a public GitHub issue for security vulnerabilities
  2. Email us at security@augmnt.sh with details about the vulnerability
  3. Include as much information as possible:
    • Type of vulnerability
    • Steps to reproduce
    • Potential impact
    • Any suggested fixes (optional)

What to Expect

  • Initial Response: We will acknowledge receipt of your report within 48 hours
  • Status Updates: We will provide updates on the status of your report at least every 5 business days
  • Resolution Timeline: We aim to resolve critical vulnerabilities within 7 days and other vulnerabilities within 30 days

After Reporting

  • We will investigate the issue and determine its severity
  • We will work on a fix and coordinate disclosure timing with you
  • Once resolved, we will publicly acknowledge your contribution (unless you prefer to remain anonymous)

Responsible Disclosure Guidelines

We ask that you:

  • Give us reasonable time to address the issue before public disclosure
  • Make a good faith effort to avoid privacy violations, data destruction, and service disruption
  • Do not access or modify data that does not belong to you
  • Act in good faith to avoid degrading our services

Security Best Practices

For developers using subagents.sh, please refer to our detailed Security Guidelines for implementation best practices.

Contact

For security concerns: security@augmnt.sh

For general questions: hello@augmnt.sh

There aren’t any published security advisories