Skip to content

Security: johnproblems/trans4mer

Security

.github/SECURITY.md

Security Policy

Trans4mers is architected around a Sovereign-First, Zero-Trust Execution security model. All agent operations are confined by explicit capabilities, sandbox barriers, and human approval gates.

Supported Versions

Version Supported
0.1.x

Reporting a Vulnerability

If you discover a potential security vulnerability regarding sandbox escapes, unintended network egress, or credential exposure, please report it privately:

  1. Do not disclose publicly via GitHub Issues or discussions.
  2. Email security inquiries directly to the project maintainers or submit a private GitHub Security Advisory via the Security tab.
  3. Include a detailed reproduction script or description of the affected capability / IPC command.

We take security reports seriously and will acknowledge receipt within 48 hours and work with you to patch vulnerabilities promptly.

There aren't any published security advisories