Skip to content

Security: aminturabi/RAGForge

Security

SECURITY.md

Security Policy

Supported Versions

We provide security updates for the latest stable release of RAGForge.

Version Supported
v1.0.x
< v1.0

Reporting a Vulnerability

If you discover a potential security vulnerability in RAGForge, please do not report it through a public GitHub issue.

Instead, please send a detailed security report via email to security@ragforge.org or submit a private security advisory through GitHub.

Please include:

  1. Type of vulnerability (e.g., prompt injection, credential exposure, path traversal).
  2. Step-by-step instructions to reproduce the issue.
  3. Affected components (e.g., API endpoints, specific plugins).
  4. Any potential mitigations or suggested fixes.

We aim to respond to security reports within 48 hours and provide periodic updates until the vulnerability is addressed.

There aren't any published security advisories