Skip to content

Security: Archetypum/tum-bash

Security

SECURITY.md

Security Policy for tum-bash

Reporting Vulnerabilities

If you discover a security vulnerability in tum-bash, please report it by opening a new issue on the tum-bash GitHub repository:

  1. Go to IssuesNew Issue
  2. Select Submit New Issue

When reporting, please include:

  • Your operating system and version (e.g., GNU/Linux distribution, macOS, MINIX, Haiku or BSD);
  • The exact line(s) of code where the vulnerability occurs;
  • If the issue happens during runtime, include any error messages and steps to reproduce the behavior.

Your help in identifying security issues is greatly appreciated — please don’t hesitate to share your findings!


What We Do After Receiving a Report

  • We will acknowledge your report and work to fix the vulnerability as quickly as possible.
  • We will sincerely thank you for your contribution to improving tum-bash.

What We Do NOT Do

  • We will not take legal action against you.
  • We will not punish or harass you in any way.
  • We will not force you to eat hot potatoes with extra ketchup (unless you want to, of course).

Known Vulnerabilities

Please be aware that shell injection vulnerabilities might exist within tum-bash and the wider tum projects despite our best efforts to mitigate them. Always carefully review and sanitize any code or input you write or use.


Usage Recommendations

  • Some tum-bash functions require root privileges to operate. Use it with caution.
  • You are fully responsible for your actions when using tum-bash.
  • Do not modify the code unless you are confident in what you are doing.

Related Resources

There aren’t any published security advisories