Security

How Omni handles security — what’s supported, how to report a vulnerability, and the architecture that protects your data.

Supported versions

VersionSupported
v1.2.x✓ Current — receives fixes
v1.1.xCritical fixes only
< v1.1✗ End of life

Reporting a vulnerability

Please disclose privately — don’t open a public issue. The process:

  1. Acknowledgement within 72 hours.
  2. Assessment within 7 days.
  3. Fix target of 30 days for confirmed issues.

Report via the security contact in the repository’s SECURITY.md / docs/SECURITY.md.

Security architecture

Security issues are private

Public disclosure before a fix puts every user at risk. Use the private channel.