The latest tagged IBC Guard release and the main branch receive security fixes. The inherited 2024 vIBC example is experimental testnet code and is not represented as production-ready.
Please use GitHub's private vulnerability reporting for this repository. If that option is unavailable, open a minimal issue that says a private report is needed without including exploit details.
Never submit private keys, seed phrases, API tokens, live .env files, sensitive RPC URLs, or information that could put deployed contracts or funds at risk. Include the affected rule or file, impact, reproduction using synthetic values, and a proposed mitigation when possible.
The maintainer will acknowledge a report as capacity permits, validate impact, prepare a reviewed fix, and credit reporters who want attribution. No response or remediation SLA is promised for this volunteer-maintained early-stage project.