Skip to content

Security: CyberStrategyInstitute/ai-safe2-framework

Security

SECURITY.md

Security Policy

Supported Versions

Version Supported
2.1.x
2.0.x
1.0.x

Reporting a Vulnerability

Since this is a Governance Framework, a "vulnerability" is defined as:

  1. Logical Flaw: A control that, if implemented, introduces a security risk.
  2. Code Flaw: A bug in the safe2_server.py MCP script or JSON schema.
  3. Missing Critical Vector: A widely exploited attack (e.g., DeepSeek Jailbreak) not covered by the current taxonomy.

How to Report

Please DO NOT open a public GitHub Issue for critical code exploits (Zero-Days).

  • Email: security@cyberstrategyinstitute.com
  • Subject: [SECURITY] - AI SAFE2 Vulnerability Report

We will acknowledge your report within 48 hours.

There aren’t any published security advisories