The following table outlines which versions of the podman-ai-stack project are currently receiving security updates.
| Version | Supported |
|---|---|
| 0.4.x | ✅ |
| 0.3.x | ✅ |
| < 0.3.0 | ❌ |
We take the security of this project seriously. To protect the systems of our
users (including those running hybrid-btrfs-safe configurations), please do
not report vulnerabilities via public issues, social media, or public email.
Please use the GitHub Private Vulnerability Reporting feature:
- Navigate to the Security Tab of this repository.
- Click on Advisories in the left sidebar.
- Click Report a vulnerability to open a private draft advisory.
To help us investigate quickly, please follow the structure in our Security Advisory Template. Specifically, include:
- Impact: Technical description of the risk.
- Environment: Details from your
.version_manifest. - Proof of Concept: Steps to reproduce the issue privately.
- Acknowledgement: You can expect a response within 48 hours confirming receipt of your report.
- Updates: We provide progress updates at least once a week during investigation and patching.
- Disclosure: Once a fix is ready, we will coordinate with you to publish a Security Advisory and credit your contribution via the MT-Tools disclosure process.