To report a security vulnerability in Cancer CLI, please open a GitHub Security Advisory at:
https://github.com/n4igme/cancer-cli/security/advisories/new
Alternatively, you can email the maintainer directly via GitHub.
We will acknowledge receipt within 48 hours and provide an estimated timeline for a fix. Please do not disclose the vulnerability publicly until it has been addressed.
This security policy covers:
- The Cancer CLI codebase (this repository)
- The native security scanner (
@n4igme/kali-tools) - The AI chat mode and agent functionality
This project does not currently offer a bug bounty program. Security researchers are welcome to report issues for acknowledgement and credit.