Skip to content

Security: ssh-mitm/ssh-mitm

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in SSH-MITM, please report it privately and responsibly.

Do not create public issues or pull requests that contain details about the vulnerability.

Instead, use GitHub's private Security Advisories feature:

Alternatively, you can reach us by email at support@ssh-mitm.at.

We aim to respond within 7–14 business days and will keep you informed throughout the process.

Supported Versions

Security updates are provided for the latest release only. Please update to the latest version to receive all security patches.

Version Supported
Latest
Older

Response Process

After receiving your report, we will:

  1. Confirm receipt of the report
  2. Investigate and assess the impact
  3. Develop a fix and prepare a release
  4. Coordinate public disclosure with you so users have time to upgrade

Recognition

If you wish, contributors who report security vulnerabilities will be acknowledged in the release notes of the corresponding patch.

Responsible Disclosure

We appreciate responsible disclosures and are committed to resolving vulnerabilities in a timely manner. Thank you for helping keep SSH-MITM secure.

There aren't any published security advisories