Security reports are accepted for the latest released version of HTB-Operator.
Please report security issues by creating a GitHub issue.
This project is open source, so reports should focus on meaningful security issues affecting HTB-Operator itself. Since users may intentionally run the tool with elevated privileges for VPN or hosts-file operations, issues based solely on local code execution through user-provided scripts or intentionally executed commands are generally out of scope.
Security issues related to unsafe handling of HTB-provided downloads, API responses, credentials, tokens, or configuration files are in scope.