🛡️ Security Policy & Reporting Guidelines

At Crystal Studio Labs, we take code security, secret prevention, and dependency hygiene seriously.


🔒 Supported Versions

We provide security updates and patch releases for the latest major version of our open-source tools:

Project Supported Version Status
ARGUS Action v1.x 🟢 Active Security Support
MenuForge v1.x 🟢 Active Security Support
CrystalSystem.js v1.x 🟢 Active Security Support
InkMD v1.x 🟢 Active Security Support

🚨 Reporting a Vulnerability

If you discover a potential security vulnerability within any Crystal Studio Labs repository or action:

  1. Do NOT open a public GitHub issue.
  2. Send a private vulnerability report detailing:
    • Affected repository and file/version
    • Description of the vulnerability and potential impact
    • Proof-of-concept steps or exploit scenario
  3. Email your report to: security@crystalstudiolabs.com or contact project leads privately on Discord.

We aim to acknowledge reports within 48 hours and provide resolution timelines within 7 business days.