Please do not report security vulnerabilities through public GitHub issues, discussions, or pull requests.
Report them through Tabnine's official responsible disclosure process:
https://support.tabnine.com/hc/en-us/articles/19766967102097-Vulnerability-Responsible-Disclosure
Follow the instructions on that page. When you report, please include:
- A description of the vulnerability and its impact.
- Steps to reproduce, or a proof of concept.
- The version affected (
tabnine-opencode --version) and your platform.
Please give us a reasonable period to investigate and address the issue before any public disclosure.
The Tabnine plugin for opencode is in beta. Security fixes are provided for the most recent release. Please make sure you are on the latest version before reporting an issue.