If you find a security vulnerability in Naptrace itself, please report it responsibly.
Email: hamzamiladin123@gmail.com
Do not open a public GitHub issue for security vulnerabilities.
We will acknowledge your report within 48 hours and aim to release a fix within 7 days for critical issues.
Naptrace is a security analysis tool. Vulnerabilities in its own code (command injection via user-supplied patch URLs, path traversal in cache handling, etc.) are in scope.
Findings that Naptrace reports about other codebases are not vulnerabilities in Naptrace.
| Version | Supported |
|---|---|
| latest | Yes |
| < latest | No |