Security

Report product vulnerabilities responsibly.

Reports about Vyper Guard itself are handled privately before public disclosure.

Reporting

Open a private GitHub security advisory. Include the affected version, reproduction steps, impact, and proposed mitigation. Never include third-party private contract source.

CLI data handling

Local CLI analysis runs on the user’s machine and does not require source uploads.

Scope

Vyper Guard findings are review evidence, not proof of correctness or a replacement for a professional audit.