Skip to content

Security: mongodb-developer/ms-agent-framework-mongodb

Security

SECURITY.md

Security Policy

Reporting a vulnerability

Do not open a public issue for a suspected vulnerability.

Use GitHub's private vulnerability reporting for this repository:

  1. Open the repository's Security tab.
  2. Select Report a vulnerability.
  3. Include affected versions, reproduction steps, impact, and any suggested mitigation.

Maintainers will acknowledge the report through the private advisory and coordinate validation, remediation, and disclosure there. If private vulnerability reporting is unavailable, contact the repository owners privately before sharing details publicly.

Supported versions

Until the first package is published, only the latest commit on the documented release branch is eligible for security fixes. Published-version support will be recorded here as part of each release.

There aren't any published security advisories