Skip to content

Security policy

Do not report vulnerabilities through a public issue.

Email security@codevelo.dev with the subject Security report and include the affected component, potential impact, reproduction information, and a secure contact method.

Do not access data that does not belong to you or perform testing that could disrupt availability. CodeVelo will assess reports and coordinate remediation and disclosure when appropriate.