| Version | Supported |
|---|---|
| 3.0.x | ✅ |
| 2.x | ❌ |
| 1.x | ❌ |
DO NOT report security vulnerabilities via public GitHub issues.
If you believe you have found a security vulnerability in Codex Account Manager, please report it to our security team.
Email: security@example.com (Replace with actual email or private reporting method)
- We will acknowledge your report within 48 hours.
- We will investigate the issue and confirm if it is a vulnerability.
- We will provide a patch/fix as soon as possible.
- We will credit you in the release notes (if you wish).
We significantly value reports on:
- Leakage of decrypted tokens.
- Privilege escalation (accessing others' vaults).
- Encryption weakness (AES key recovery).