This security policy covers the latest stable release:
- v2.7 – TheHolyOneZ Edition
Older versions are not supported for security fixes.
If you discover a security vulnerability, please do not open a public issue. Instead, report it directly via private contact:
- Discord: theholyonez
- ID: 1284210833869639680
Provide as much information as possible:
- Description of the issue
- Steps to reproduce
- Affected version(s)
- Any logs or screenshots (if applicable)
Your report will be reviewed promptly and treated confidentially.
- Acknowledgment: We will confirm receipt within 24–48 hours.
- Assessment: The team will evaluate the severity and impact.
- Resolution: If confirmed, a fix or mitigation will be developed.
- Disclosure: A public advisory or patch will be released once users can safely update.
- Do not exploit the vulnerability in public or private systems.
- Keep details confidential until a patch is released.
- Only share vulnerability information with maintainers via the private contact method above.
We appreciate all security researchers who responsibly disclose issues. Your help keeps SharpMonoInjector safe and trustworthy.