| Version | Supported |
|---|---|
| 0.1.x | ✅ |
Email security issues or open a private GitHub security advisory. Do not use public issues.
Response: acknowledgment within 48 hours, detailed response within 7 days.
- Dependency audits: Pre-commit/push hooks, weekly CI scans, Dependabot
- Docker sandboxing: Resource limits, network isolation, read-only mounts
- Permission system: Risk assessment, user approval, audit trail
- Input validation: Zod schemas, path sanitization, parameterized commands
- Use environment variables for API keys (never commit)
- Enable Docker sandboxing for untrusted code
- Review permission prompts carefully
- Keep Mimir Code updated