Busy Octopus has no published release yet. After the first release, the latest release line will receive security fixes.
Report vulnerabilities privately through GitHub Security Advisories.
A useful report may include:
- The affected version and operating system.
- The expected and actual behavior.
- Minimal steps using synthetic data.
- A suggested fix, if known.
Do not put credentials, notification text, prompts, agent output, hook payloads, queue files, personal paths, or full environment dumps in a report. Do not open a public issue for an unpatched vulnerability.