If you discover a security vulnerability in any Edictum project, please report it responsibly.
Do NOT open a public GitHub issue for security vulnerabilities.
Instead, please email: security@edictum.ai
Include:
- Description of the vulnerability
- Steps to reproduce
- Potential impact
- Suggested fix (if any)
We will acknowledge receipt within 48 hours and aim to provide a fix within 7 days for critical issues.
| Version | Supported |
|---|---|
| Latest release | ✅ |
| Previous minor | ✅ (security fixes only) |
| Older versions | ❌ |
Edictum maintains an adversarial test suite with 114+ security-focused tests covering shell metacharacter bypasses, sandbox symlink escapes, input injection, backend failure modes, and session concurrency.