Skip to content

Security: AI-employee-force/aief-accountingo

Security

SECURITY.md

Security Policy — aief-accountingo

Supported versions

Version Supported
main Yes
Older branches No

Reporting a vulnerability

Do not open a public GitHub issue for security vulnerabilities.

Please report security vulnerabilities by emailing:

security@ai-employee-force.com

Include in your report:

  • A description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested remediation (optional)

We will acknowledge your report within 48 hours and aim to provide a fix or mitigation within 14 days for critical issues.

Disclosure policy

  • We follow responsible disclosure — please give us reasonable time to patch before public disclosure
  • We will credit reporters in the release notes (unless you prefer to remain anonymous)
  • We will not take legal action against researchers acting in good faith

Security practices

  • Dependencies are reviewed and updated regularly
  • All secrets and credentials must be stored in environment variables or a secrets manager — never committed to this repository
  • Access to this repository is restricted to @AI-employee-force/agent-accountingo-team

Scope

This policy covers the aief-accountingo repository within the AI-employee-force organization.

There aren't any published security advisories