If you discover a security vulnerability in VX itself, please report it responsibly:
- Do not open a public GitHub issue
- Email the maintainer or use GitHub Security Advisories
- Include steps to reproduce and potential impact
We will acknowledge receipt within 48 hours and provide a fix timeline.
| Version | Supported |
|---|---|
| 0.1.x | Yes |
This policy covers the VX tool itself. For vulnerabilities found by VX in other applications, please report them to the respective application owners.