If you discover a security vulnerability, please report it through GitHub Security Advisories:
Please do NOT open a public GitHub issue for security vulnerabilities.
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Any suggested fixes (optional)
- Initial response: within 48 hours
- Status update: within 7 days
- Fix timeline: depends on severity
| Version | Supported |
|---|---|
| 0.1.x | Yes |
When using Proofloop:
- Never commit API keys or secrets
- Use
--auto-approveonly in trusted environments - Review generated code before deploying to production