Skip to content

Security: echohello-dev/karpenter-provider-hetzner

Security

SECURITY.md

Security Policy

If you discover a vulnerability in karpenter-provider-hetzner please report it privately. Do not open a public GitHub issue.

Reporting

Email: security@echohello.dev (or open a private GitHub advisory at https://github.com/echohello-dev/karpenter-provider-hetzner/security/advisories/new).

Include:

  • A description of the vulnerability and impact.
  • A reproducer (Hetzner project, karpenter version, cluster topology).
  • Your contact details.

What to expect

  • Acknowledgement within 2 business days.
  • Triage assessment within 7 days.
  • Coordinated disclosure timeline agreed with you before any fix ships.

Supported versions

Only the latest released minor is patched. Older releases are best-effort.

There aren't any published security advisories