Skip to content

Security: pleme-io/ansible-forge

Security

SECURITY.md

Security Policy

Reporting a vulnerability

Do not open public issues for security bugs.

Use GitHub's Private vulnerability reporting on this repository.

If unavailable, email security@pleme.io with a description, affected versions, and reproduction steps.

Response targets

Step Target
Acknowledgement 5 business days
Triage + severity 10 business days
Coordinated disclosure 90 days from acknowledgement

Scope

In scope:

  • The Rust crate at src/ — generator correctness, output safety
  • Generated Python module shape (escape correctness, no command injection, etc.)
  • The module_utils/akeyless_client.py helper bundled in src/client_helper.rs

Out of scope (report upstream):

Supported versions

Version Status
0.2.x Active
< 0.2 Unsupported

There aren't any published security advisories