Skip to content

Security: ProxySQL/orchestrator

Security

SECURITY.md

Security Policy

Reporting a Vulnerability

If you discover a security vulnerability in orchestrator, please report it responsibly. Do not open a public GitHub issue.

Email: security@proxysql.com

Please include:

  • Description of the vulnerability
  • Steps to reproduce
  • Potential impact
  • Suggested fix (if any)

Response Timeline

  • Acknowledgment: within 48 hours
  • Initial assessment: within 7 days
  • Fix or mitigation: timeline communicated after assessment

Supported Versions

Version Supported
4.x Yes
3.x No

Responsible Disclosure

We credit reporters who follow responsible disclosure practices in our release notes, unless they prefer to remain anonymous.

There aren’t any published security advisories