- The trust boundary is a 0600 socket inside a 0700 directory.
SO_PEERCREDis advisory logging only, not access control.- Any process running as the same uid is trusted.
--asis a name-collision guard, not authentication.
Intern is currently in active development. Security updates are provided for the latest release branch.
| Version | Supported |
|---|---|
| 0.3.x | ✅ |
| < 0.3.0 | ❌ |
If you discover a security vulnerability in Intern, please report it immediately to help keep this project secure.
Please do not report security vulnerabilities via public GitHub issues.
Instead, please send an email to: pravdevrav@gmail.com
In your report, please include:
- A description of the vulnerability.
- Steps to reproduce the issue (including any proof-of-concept scripts or commands).
- The potential impact of the vulnerability.
We will acknowledge receipt of your report within 48 hours and work with you to coordinate a security release to address the issue. Thank you for helping keep Intern secure!