Skip to content

[Security]: Request for a private disclosure channel #300

Description

@racy0722

Product or interface

CLI - interactive TUI

Version

v0.5.1

Platform

Linux

OS version and architecture

Arch Linux x86_64 kernel: 7.2.6-arch2-1

Issue area

Other

Desktop log upload ID (optional)

No response

Steps to reproduce

I have reproduced a security issue affecting MiniMax Code CLI 0.5.1 on Linux.

In accordance with SECURITY.md, I am not including reproduction steps, technical details, source locations, logs, or proof-of-concept material in this public issue.

A complete report with a minimal reproduction and redacted evidence is ready. Could @hetaoBackend or another maintainer provide a private disclosure channel?

Expected and actual behavior

Expected: A private channel should be available for submitting the complete security report.

Actual: GitHub private vulnerability reporting is currently unavailable and SECURITY.md does not list a public security email, so the report cannot be submitted safely through the available public issue form.

Redacted error summary

A security-relevant CLI behavior has been reproduced consistently on MiniMax Code 0.5.1 under Linux. Full technical details are intentionally withheld from this public issue pending a private disclosure channel.

Screenshots

No response

Before submitting

  • I have searched existing issues.
  • I have included my version and removed sensitive information.

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't workingneeds-triageAwaiting maintainer assessmenttuiInteractive terminal UI (TUI)

    Type

    No type

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions